[perl] The Digest eval bug is CVE-2011-3597

Petr Pisar ppisar at fedoraproject.org
Wed Oct 5 07:21:59 UTC 2011


commit 022d53b33fd6324d48f4c5532f60d4e1de7ca4e3
Author: Petr Písař <ppisar at redhat.com>
Date:   Wed Oct 5 09:20:48 2011 +0200

    The Digest eval bug is CVE-2011-3597

 perl.spec |    2 +-
 1 files changed, 1 insertions(+), 1 deletions(-)
---
diff --git a/perl.spec b/perl.spec
index 7abc637..9ef3a37 100644
--- a/perl.spec
+++ b/perl.spec
@@ -2284,7 +2284,7 @@ sed \
 # Old changelog entries are preserved in CVS.
 %changelog
 * Tue Oct 04 2011 Petr Pisar <ppisar at redhat.com> - 4:5.14.2-195
-- Fix code injection in Digest (bug #743010)
+- Fix CVE-2011-3597 (code injection in Digest) (bug #743010)
 - Sub-package Digest and thus Digest::MD5 module (bug #743247)
 
 * Tue Oct 04 2011 Iain Arnell <iarnell at gmail.com> 4:5.14.2-194


More information about the scm-commits mailing list