MGASA-2018-0241
Dashboard / Vulnerabilities / MGASA-2018-0241
MGASA-2018-0241
Summary: Updated perl packages fix security vulnerabilities
Details: Brian Carpenter reported that a crafted regular expression could cause a heap buffer write overflow, with control over the bytes written (CVE-2018-6797). Nguyen Duc Manh reported that matching a crafted locale dependent regular expression can cause a heap-based buffer over-read and potentially information disclosure (CVE-2018-6798). GwanYeong Kim reported that 'pack()' could cause a heap buffer write overflow with a large item count (CVE-2018-6913).
References: https://advisories.mageia.org/MGASA-2018-0241.html, https://bugs.mageia.org/show_bug.cgi?id=22913, https://www.debian.org/security/2018/dsa-4172
Affected packages
Package
Name: perl
Purl: pkg:rpm/mageia/perl?arch=source&distro=mageia-6
Affected ranges
Type: ECOSYSTEM
Events:
