Описание
Module::Signature before 0.74 allows remote attackers to bypass signature verification for files via a signature file that does not list the files.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat Enterprise Linux 7 | perl-Module-Signature | Will not fix |
Показывать по
10
Дополнительная информация
Статус:
Moderate
Дефект:
CWE-20
https://bugzilla.redhat.com/show_bug.cgi?id=1209915perl-Module-Signature: arbitrary code execution during test phase
5.1 Medium
CVSS2
Связанные уязвимости
ubuntu
больше 10 лет назад
Module::Signature before 0.74 allows remote attackers to bypass signature verification for files via a signature file that does not list the files.
nvd
больше 10 лет назад
Module::Signature before 0.74 allows remote attackers to bypass signature verification for files via a signature file that does not list the files.
debian
больше 10 лет назад
Module::Signature before 0.74 allows remote attackers to bypass signat ...
github
больше 3 лет назад
Module::Signature before 0.74 allows remote attackers to bypass signature verification for files via a signature file that does not list the files.
5.1 Medium
CVSS2