[Bug 1209917] CVE-2015-3408 perl-Module-Signature: arbitrary code execution when verifying module signatures

bugzilla at redhat.com bugzilla at redhat.com
Tue Aug 18 10:01:45 UTC 2015


https://bugzilla.redhat.com/show_bug.cgi?id=1209917

Stefan Cornelius <scorneli at redhat.com> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
         Whiteboard|impact=moderate,public=2015 |impact=moderate,public=2015
                   |0405,reported=20150408,sour |0405,reported=20150408,sour
                   |ce=oss-security,cvss2=5.1/A |ce=oss-security,cvss2=5.1/A
                   |V:N/AC:H/Au:N/C:P/I:P/A:P,f |V:N/AC:H/Au:N/C:P/I:P/A:P,f
                   |edora-all/perl-Module-Signa |edora-all/perl-Module-Signa
                   |ture=affected,epel-all/perl |ture=affected,epel-all/perl
                   |-Module-Signature=affected, |-Module-Signature=affected,
                   |rhel-7/perl-Module-Signatur |rhel-7/perl-Module-Signatur
                   |e=affected                  |e=wontfix



-- 
You are receiving this mail because:
You are on the CC list for the bug.


More information about the perl-devel mailing list