Search CVE reports


Toggle filters

171 – 180 of 251 results


CVE-2010-4777

Negligible priority
Ignored

The Perl_reg_numbered_buff_fetch function in Perl 5.10.0, 5.12.0, 5.14.0, and other versions, when running with debugging enabled, allows context-dependent attackers to cause a denial of service (assertion failure and application...

1 affected package

perl

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
perl
Show less packages

CVE-2013-7135

Medium priority
Ignored

The Proc::Daemon module 0.14 for Perl uses world-writable permissions for a file that stores a process ID, which allows local users to have an unspecified impact by modifying this file.

1 affected package

libproc-daemon-perl

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libproc-daemon-perl
Show less packages

CVE-2013-6393

Medium priority

Some fixes available 6 of 9

The yaml_parser_scan_tag_uri function in scanner.c in LibYAML before 0.1.5 performs an incorrect cast, which allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via crafted...

2 affected packages

libyaml, libyaml-libyaml-perl

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libyaml
libyaml-libyaml-perl
Show less packages

CVE-2014-1626

Medium priority
Ignored

XML External Entity (XXE) vulnerability in MARC::File::XML module before 1.0.2 for Perl, as used in Evergreen, Koha, perl4lib, and possibly other products, allows context-dependent attackers to read arbitrary files via a crafted XML file.

1 affected package

libmarc-xml-perl

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libmarc-xml-perl
Show less packages

CVE-2013-4407

Medium priority

Some fixes available 1 of 2

HTTP::Body::Multipart in the HTTP-Body module for Perl (1.07 through 1.22, before 1.23) uses the part of the uploaded file's name after the first "." character as the suffix of a temporary file, which makes it easier for remote...

1 affected package

libhttp-body-perl

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libhttp-body-perl
Show less packages

CVE-2013-2145

Medium priority

Some fixes available 3 of 4

The cpansign verify functionality in the Module::Signature module before 0.72 for Perl allows attackers to bypass the signature check and execute arbitrary code via a SIGNATURE file with a "special unknown cipher" that references...

1 affected package

libmodule-signature-perl

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libmodule-signature-perl
Show less packages

CVE-2013-1667

Medium priority
Fixed

The rehash mechanism in Perl 5.8.2 through 5.16.x allows context-dependent attackers to cause a denial of service (memory consumption and crash) via a crafted hash key.

1 affected package

perl

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
perl
Show less packages

CVE-2012-6329

Medium priority
Fixed

The _compile function in Maketext.pm in the Locale::Maketext implementation in Perl before 5.17.7 does not properly handle backslashes and fully qualified method names during compilation of bracket notation, which...

1 affected package

perl

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
perl
Show less packages

CVE-2011-2728

Negligible priority
Ignored

The bsd_glob function in the File::Glob module for Perl before 5.14.2 allows context-dependent attackers to cause a denial of service (crash) via a glob expression with the GLOB_ALTDIRFUNC flag, which triggers an uninitialized...

1 affected package

perl

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
perl
Show less packages

CVE-2012-5526

Low priority

Some fixes available 5 of 10

CGI.pm module before 3.63 for Perl does not properly escape newlines in (1) Set-Cookie or (2) P3P headers, which might allow remote attackers to inject arbitrary headers into responses from applications that use CGI.pm.

2 affected packages

libcgi-pm-perl, perl

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libcgi-pm-perl
perl
Show less packages