[Bug 1169369] CVE-2014-9130 libyaml: assert failure when processing wrapped strings

bugzilla at redhat.com bugzilla at redhat.com
Wed Jan 14 17:49:50 UTC 2015


https://bugzilla.redhat.com/show_bug.cgi?id=1169369

Vincent Danen <vdanen at redhat.com> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
         Whiteboard|impact=moderate,public=2014 |impact=moderate,public=2014
                   |1126,reported=20141201,sour |1126,reported=20141201,sour
                   |ce=oss-sec,cvss2=4.3/AV:N/A |ce=oss-sec,cvss2=4.3/AV:N/A
                   |C:M/Au:N/C:N/I:N/A:P,cwe=CW |C:M/Au:N/C:N/I:N/A:P,cwe=CW
                   |E-617,rhel-6/libyaml=affect |E-617,rhel-6/libyaml=affect
                   |ed,rhel-7/libyaml=affected, |ed,rhel-7/libyaml=affected,
                   |rhscl-1/libyaml=defer,fedor |rhscl-1/libyaml=affected,fe
                   |a-all/libyaml=affected,epel |dora-all/libyaml=affected,e
                   |-all/libyaml=affected,mrg-1 |pel-all/libyaml=affected,mr
                   |/libyaml=wontfix,mrg-2/liby |g-1/libyaml=wontfix,mrg-2/l
                   |aml=wontfix,rhn_satellite_5 |ibyaml=wontfix,rhn_satellit
                   |.3/libyaml=defer,rhn_satell |e_5.3/libyaml=defer,rhn_sat
                   |ite_5.4/libyaml=defer,rhn_s |ellite_5.4/libyaml=defer,rh
                   |atellite_5.5/libyaml=defer, |n_satellite_5.5/libyaml=def
                   |rhn_satellite_5.6/libyaml=d |er,rhn_satellite_5.6/libyam
                   |efer,rhn_satellite_6/libyam |l=defer,rhn_satellite_6/lib
                   |l=defer,rhn_satellite_6/rub |yaml=defer,rhn_satellite_6/
                   |y193-libyaml=defer,rhui-2/l |ruby193-libyaml=defer,rhui-
                   |ibyaml=affected,sam-1/libya |2/libyaml=affected,sam-1/li
                   |ml=defer,cfme-5/mingw-libya |byaml=defer,cfme-5/mingw-li
                   |ml=defer,cfme-5/ruby193-lib |byaml=defer,cfme-5/ruby193-
                   |yaml=defer,openstack-4/liby |libyaml=defer,openstack-4/l
                   |aml=new,openstack-5/libyaml |ibyaml=new,openstack-5/liby
                   |=new,openshift-1/ruby193-li |aml=new,openshift-1/ruby193
                   |byaml=defer,fedora-all/perl |-libyaml=defer,fedora-all/p
                   |-YAML-LibYAML=affected,epel |erl-YAML-LibYAML=affected,e
                   |-6/perl-YAML-LibYAML=affect |pel-6/perl-YAML-LibYAML=aff
                   |ed,epel-7/perl-YAML-LibYAML |ected,epel-7/perl-YAML-LibY
                   |=affected,jboss/inktank-1.2 |AML=affected,jboss/inktank-
                   |-libyaml=notaffected        |1.2-libyaml=notaffected



-- 
You are receiving this mail because:
You are on the CC list for the bug.
Unsubscribe from this bug https://bugzilla.redhat.com/token.cgi?t=VCIK6kIq3C&a=cc_unsubscribe



More information about the perl-devel mailing list