Описание
The gen_class_pod implementation in lib/Config/Model/Utils/GenClassPod.pm in Config-Model (aka libconfig-model-perl) before 2.102 has a dangerous "use lib" line, which allows remote attackers to have an unspecified impact via a crafted Debian package file.
| Релиз | Статус | Примечание |
|---|---|---|
| artful | not-affected | 2.097-2 |
| bionic | not-affected | 2.097-2 |
| cosmic | not-affected | 2.097-2 |
| devel | not-affected | 2.097-2 |
| disco | not-affected | 2.097-2 |
| eoan | not-affected | 2.097-2 |
| esm-apps/bionic | not-affected | 2.097-2 |
| esm-apps/focal | not-affected | 2.097-2 |
| esm-apps/jammy | not-affected | 2.097-2 |
| esm-apps/noble | not-affected | 2.097-2 |
Показывать по
6.8 Medium
CVSS2
7.3 High
CVSS3
Связанные уязвимости
The gen_class_pod implementation in lib/Config/Model/Utils/GenClassPod.pm in Config-Model (aka libconfig-model-perl) before 2.102 has a dangerous "use lib" line, which allows remote attackers to have an unspecified impact via a crafted Debian package file.
The gen_class_pod implementation in lib/Config/Model/Utils/GenClassPod ...
The gen_class_pod implementation in lib/Config/Model/Utils/GenClassPod.pm in Config-Model (aka libconfig-model-perl) before 2.102 has a dangerous "use lib" line, which allows remote attackers to have an unspecified impact via a crafted Debian package file.
6.8 Medium
CVSS2
7.3 High
CVSS3