RSS   Vulnerabilities for 'Pathtools'   RSS

2016-01-13
 
CVE-2015-8607

 

 
The canonpath function in the File::Spec module in PathTools before 3.62, as used in Perl, does not properly preserve the taint attribute of data, which might allow context-dependent attackers to bypass the taint protection mechanism via a crafted string.

 

 >>> Vendor: PERL 11 Products
PERL
FILE
Suidperl
Cgi lite
Convert uulib
PCRE
Cgi application module
Pathtools
DBI
Database interface
Comprehensive perl archive network


Copyright 2024, cxsecurity.com

 

Back to Top