[Bug 1128979] perl-Plack: trailing slashes removed leading to source code disclosure [fedora-all]

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



https://bugzilla.redhat.com/show_bug.cgi?id=1128979



--- Comment #9 from Ralf Corsepius <rc040203@xxxxxxxxxx> ---
(In reply to Emmanuel Seyman from comment #8)
> (In reply to Ralf Corsepius from comment #7)
> >
> > No, it's an upstream requirement. Plack-1.0031 requires
> > perl(File::ShareDir::Install) >= 0.06
> 
> Fixing this bug does not require updating perl-Plack to 1.0031. You can stay
> on 1.0030 and apply the patch that fixes the vulnerability.

Why should I? Just to push an update, which would be obsoleted at the time it
is released? 

Let's take this thread to an end. I'll further on disgard it and further CVEs.

-- 
You are receiving this mail because:
You are on the CC list for the bug.
Unsubscribe from this bug https://bugzilla.redhat.com/token.cgi?t=1zEUabq7aF&a=cc_unsubscribe
--
Fedora Extras Perl SIG
http://www.fedoraproject.org/wiki/Extras/SIGs/Perl
perl-devel mailing list
perl-devel@xxxxxxxxxxxxxxxxxxxxxxx
https://admin.fedoraproject.org/mailman/listinfo/perl-devel





[Index of Archives]     [Fedora Announce]     [Fedora Kernel]     [Fedora Testing]     [Fedora Legacy Announce]     [Fedora PHP Devel]     [Kernel Devel]     [Fedora Legacy]     [Fedora Maintainers]     [Fedora Desktop]     [PAM]     [Red Hat Development]     [Big List of Linux Books]     [Gimp]     [Yosemite Information]
  Powered by Linux