Bug#776270: perl: CVE-2012-3878 module loading security weakness

Niko Tyni ntyni at debian.org
Mon Jan 26 07:25:33 UTC 2015


On Sun, Jan 25, 2015 at 11:00:27PM -0500, Michael Gilbert wrote:
> package: src:perl
> severity: normal
> tags: security
> 
> Hi,
> 
> There was a CVE assigned to this issue a while ago with strangely
> enough no real details.  The only non-boilerplate information about it
> is at osvdb, but they don't provide any details that could be used to
> fix the issue:
> http://osvdb.org/show/osvdb/106565

By that description this seems to be a dup of #588017 
("current directory in @INC potentially harmful")?
-- 
Niko Tyni   ntyni at debian.org




More information about the Perl-maintainers mailing list