Описание
Module::Signature before 0.74 allows remote attackers to bypass signature verification for files via a signature file that does not list the files.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat Enterprise Linux 7 | perl-Module-Signature | Will not fix |
Показывать по
10
Дополнительная информация
Статус:
Moderate
Дефект:
CWE-20
https://bugzilla.redhat.com/show_bug.cgi?id=1209915perl-Module-Signature: arbitrary code execution during test phase
EPSS
Процентиль: 82%
0.02358
Низкий
5.1 Medium
CVSS2
Связанные уязвимости
ubuntu
около 11 лет назад
Module::Signature before 0.74 allows remote attackers to bypass signature verification for files via a signature file that does not list the files.
nvd
около 11 лет назад
Module::Signature before 0.74 allows remote attackers to bypass signature verification for files via a signature file that does not list the files.
debian
около 11 лет назад
Module::Signature before 0.74 allows remote attackers to bypass signat ...
github
около 4 лет назад
Module::Signature before 0.74 allows remote attackers to bypass signature verification for files via a signature file that does not list the files.
EPSS
Процентиль: 82%
0.02358
Низкий
5.1 Medium
CVSS2