Bug 971096 (CVE-2013-2145)
| Summary: | CVE-2013-2145 perl-Module-Signature: arbitrary code execution when verifying SIGNATURE | |||
|---|---|---|---|---|
| Product: | [Other] Security Response | Reporter: | Vincent Danen <vdanen> | |
| Component: | vulnerability | Assignee: | Red Hat Product Security <security-response-team> | |
| Status: | CLOSED UPSTREAM | QA Contact: | ||
| Severity: | medium | Docs Contact: | ||
| Priority: | medium | |||
| Version: | unspecified | CC: | paul, perl-devel, pertusus, ppisar, vdanen | |
| Target Milestone: | --- | Keywords: | Security | |
| Target Release: | --- | |||
| Hardware: | All | |||
| OS: | Linux | |||
| Whiteboard: | ||||
| Fixed In Version: | perl-Module-Signature 0.72 | Doc Type: | Bug Fix | |
| Doc Text: | Story Points: | --- | ||
| Clone Of: | ||||
| : | 971447 (view as bug list) | Environment: | ||
| Last Closed: | 2019-06-10 11:00:43 UTC | Type: | --- | |
| Regression: | --- | Mount Type: | --- | |
| Documentation: | --- | CRM: | ||
| Verified Versions: | Category: | --- | ||
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | ||
| Cloudforms Team: | --- | Target Upstream Version: | ||
| Embargoed: | ||||
| Bug Depends On: | 971098, 971099, 971447 | |||
| Bug Blocks: | ||||
|
Description
Vincent Danen
2013-06-05 16:32:42 UTC
Created perl-Module-Signature tracking bugs for this issue Affects: fedora-all [bug 971098] Affects: epel-all [bug 971099] perl-Module-Signature-0.73-1.fc19 has been pushed to the Fedora 19 stable repository. If problems still persist, please make note of it in this bug report. perl-Module-Signature-0.73-1.fc18 has been pushed to the Fedora 18 stable repository. If problems still persist, please make note of it in this bug report. perl-Module-Signature-0.73-1.fc17 has been pushed to the Fedora 17 stable repository. If problems still persist, please make note of it in this bug report. perl-Module-Signature-0.73-1.el6 has been pushed to the Fedora EPEL 6 stable repository. If problems still persist, please make note of it in this bug report. perl-Module-Signature-0.73-1.el5 has been pushed to the Fedora EPEL 5 stable repository. If problems still persist, please make note of it in this bug report. This is fixed in all current Fedora and EPEL releases. RHEL-7 has perl-Module-Signature-0.73-2.el7. I think this bug can be closed. This CVE Bugzilla entry is for community support informational purposes only as it does not affect a package in a commercially supported Red Hat product. Refer to the dependent bugs for status of those individual community products. |