[Bug 658976] perl-CGI, perl-CGI-Simple: CVE-2010-2761 -- hardcoded value of the MIME boundary string in multipart/x-mixed-replace content, CVE-2010-4410 -- CRLF injection vulnerability in the header function

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Please do not reply directly to this email. All additional
comments should be made in the comments box of this bug.


https://bugzilla.redhat.com/show_bug.cgi?id=658976

Jan Lieskovsky <jlieskov@xxxxxxxxxx> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
                 CC|                            |kurt@xxxxxxxxxxxx,
                   |                            |tcallawa@xxxxxxxxxx

--- Comment #7 from Jan Lieskovsky <jlieskov@xxxxxxxxxx> 2011-01-04 06:08:54 EST ---
Tom, Kurt,

  since the CVEs description from c#3 and c#4 can't be split based
on package, please take this bug as a master security bug also
for perl-CGI-Simple component for now (the bugs were filed sooner
than CVEs were assigned [each being for both components :(]).

Created perl-CGI-Simple tracking bugs for this issue

Affects: fedora-all [bug 658973]

-- 
Configure bugmail: https://bugzilla.redhat.com/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are on the CC list for the bug.
--
Fedora Extras Perl SIG
http://www.fedoraproject.org/wiki/Extras/SIGs/Perl
perl-devel mailing list
perl-devel@xxxxxxxxxxxxxxxxxxxxxxx
https://admin.fedoraproject.org/mailman/listinfo/perl-devel


[Index of Archives]     [Fedora Announce]     [Fedora Kernel]     [Fedora Testing]     [Fedora Legacy Announce]     [Fedora PHP Devel]     [Kernel Devel]     [Fedora Legacy]     [Fedora Maintainers]     [Fedora Desktop]     [PAM]     [Red Hat Development]     [Big List of Linux Books]     [Gimp]     [Yosemite Information]
  Powered by Linux