Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2011-1424

Опубликовано: 03 нояб. 2011
Источник: oracle-oval
Платформа: Oracle Linux 6

Описание

ELSA-2011-1424: perl security update (MODERATE)

[4:5.10.1-119.1]

  • 731246 (CVE-2011-2939)CVE-2011-2939 heap overflow - decoding Unicode string
  • 743010 - perl: code injection vulnerability in Digest->new()
  • Resolves: rhbz#743090, rhbz#743092

Обновленные пакеты

Oracle Linux 6

Oracle Linux x86_64

perl

5.10.1-119.el6_1.1

perl-Archive-Extract

0.38-119.el6_1.1

perl-Archive-Tar

1.58-119.el6_1.1

perl-CGI

3.51-119.el6_1.1

perl-CPAN

1.9402-119.el6_1.1

perl-CPANPLUS

0.88-119.el6_1.1

perl-Compress-Raw-Zlib

2.023-119.el6_1.1

perl-Compress-Zlib

2.020-119.el6_1.1

perl-Digest-SHA

5.47-119.el6_1.1

perl-ExtUtils-CBuilder

0.27-119.el6_1.1

perl-ExtUtils-Embed

1.28-119.el6_1.1

perl-ExtUtils-MakeMaker

6.55-119.el6_1.1

perl-ExtUtils-ParseXS

2.2003.0-119.el6_1.1

perl-File-Fetch

0.26-119.el6_1.1

perl-IO-Compress-Base

2.020-119.el6_1.1

perl-IO-Compress-Zlib

2.020-119.el6_1.1

perl-IO-Zlib

1.09-119.el6_1.1

perl-IPC-Cmd

0.56-119.el6_1.1

perl-Locale-Maketext-Simple

0.18-119.el6_1.1

perl-Log-Message

0.02-119.el6_1.1

perl-Log-Message-Simple

0.04-119.el6_1.1

perl-Module-Build

0.3500-119.el6_1.1

perl-Module-CoreList

2.18-119.el6_1.1

perl-Module-Load

0.16-119.el6_1.1

perl-Module-Load-Conditional

0.30-119.el6_1.1

perl-Module-Loaded

0.02-119.el6_1.1

perl-Module-Pluggable

3.90-119.el6_1.1

perl-Object-Accessor

0.34-119.el6_1.1

perl-Package-Constants

0.02-119.el6_1.1

perl-Params-Check

0.26-119.el6_1.1

perl-Parse-CPAN-Meta

1.40-119.el6_1.1

perl-Pod-Escapes

1.04-119.el6_1.1

perl-Pod-Simple

3.13-119.el6_1.1

perl-Term-UI

0.20-119.el6_1.1

perl-Test-Harness

3.17-119.el6_1.1

perl-Test-Simple

0.92-119.el6_1.1

perl-Time-HiRes

1.9721-119.el6_1.1

perl-Time-Piece

1.15-119.el6_1.1

perl-core

5.10.1-119.el6_1.1

perl-devel

5.10.1-119.el6_1.1

perl-libs

5.10.1-119.el6_1.1

perl-parent

0.221-119.el6_1.1

perl-suidperl

5.10.1-119.el6_1.1

perl-version

0.77-119.el6_1.1

Oracle Linux i686

perl

5.10.1-119.el6_1.1

perl-Archive-Extract

0.38-119.el6_1.1

perl-Archive-Tar

1.58-119.el6_1.1

perl-CGI

3.51-119.el6_1.1

perl-CPAN

1.9402-119.el6_1.1

perl-CPANPLUS

0.88-119.el6_1.1

perl-Compress-Raw-Zlib

2.023-119.el6_1.1

perl-Compress-Zlib

2.020-119.el6_1.1

perl-Digest-SHA

5.47-119.el6_1.1

perl-ExtUtils-CBuilder

0.27-119.el6_1.1

perl-ExtUtils-Embed

1.28-119.el6_1.1

perl-ExtUtils-MakeMaker

6.55-119.el6_1.1

perl-ExtUtils-ParseXS

2.2003.0-119.el6_1.1

perl-File-Fetch

0.26-119.el6_1.1

perl-IO-Compress-Base

2.020-119.el6_1.1

perl-IO-Compress-Zlib

2.020-119.el6_1.1

perl-IO-Zlib

1.09-119.el6_1.1

perl-IPC-Cmd

0.56-119.el6_1.1

perl-Locale-Maketext-Simple

0.18-119.el6_1.1

perl-Log-Message

0.02-119.el6_1.1

perl-Log-Message-Simple

0.04-119.el6_1.1

perl-Module-Build

0.3500-119.el6_1.1

perl-Module-CoreList

2.18-119.el6_1.1

perl-Module-Load

0.16-119.el6_1.1

perl-Module-Load-Conditional

0.30-119.el6_1.1

perl-Module-Loaded

0.02-119.el6_1.1

perl-Module-Pluggable

3.90-119.el6_1.1

perl-Object-Accessor

0.34-119.el6_1.1

perl-Package-Constants

0.02-119.el6_1.1

perl-Params-Check

0.26-119.el6_1.1

perl-Parse-CPAN-Meta

1.40-119.el6_1.1

perl-Pod-Escapes

1.04-119.el6_1.1

perl-Pod-Simple

3.13-119.el6_1.1

perl-Term-UI

0.20-119.el6_1.1

perl-Test-Harness

3.17-119.el6_1.1

perl-Test-Simple

0.92-119.el6_1.1

perl-Time-HiRes

1.9721-119.el6_1.1

perl-Time-Piece

1.15-119.el6_1.1

perl-core

5.10.1-119.el6_1.1

perl-devel

5.10.1-119.el6_1.1

perl-libs

5.10.1-119.el6_1.1

perl-parent

0.221-119.el6_1.1

perl-suidperl

5.10.1-119.el6_1.1

perl-version

0.77-119.el6_1.1

Связанные CVE

Связанные уязвимости

ubuntu
больше 13 лет назад

Eval injection vulnerability in the Digest module before 1.17 for Perl allows context-dependent attackers to execute arbitrary commands via the new constructor.

redhat
больше 13 лет назад

Eval injection vulnerability in the Digest module before 1.17 for Perl allows context-dependent attackers to execute arbitrary commands via the new constructor.

nvd
больше 13 лет назад

Eval injection vulnerability in the Digest module before 1.17 for Perl allows context-dependent attackers to execute arbitrary commands via the new constructor.

debian
больше 13 лет назад

Eval injection vulnerability in the Digest module before 1.17 for Perl ...

ubuntu
больше 13 лет назад

Off-by-one error in the decode_xs function in Unicode/Unicode.xs in the Encode module before 2.44, as used in Perl before 5.15.6, might allow context-dependent attackers to cause a denial of service (memory corruption) via a crafted Unicode string, which triggers a heap-based buffer overflow.