RLSA-2021:1678
Dashboard / Vulnerabilities / RLSA-2021:1678
Summary: Moderate: perl security and bug fix update
Details: Perl is a high-level programming language that is commonly used for system administration utilities and web programming. Security Fix(es): * perl: heap-based buffer overflow in regular expression compiler leads to DoS (CVE-2020-10543) * perl: corruption of intermediate language state of compiled regular expression due to integer overflow leads to DoS (CVE-2020-10878) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.4 Release Notes linked from the References section.
References: https://errata.rockylinux.org/RLSA-2021:1678, https://bugzilla.redhat.com/show_bug.cgi?id=1807120, https://bugzilla.redhat.com/show_bug.cgi?id=1837975, https://bugzilla.redhat.com/show_bug.cgi?id=1837988, https://bugzilla.redhat.com/show_bug.cgi?id=1903503, https://bugzilla.redhat.com/show_bug.cgi?id=1913693
Affected packages
Package
Name: perl
Purl: pkg:rpm/rocky-linux/perl?distro=rocky-linux-8-4-legacy&epoch=4
Affected ranges
Type: ECOSYSTEM
Events:
