Gentoo Forums
Gentoo Forums
Gentoo Forums
Quick Search: in
Pre-GLSA: CGI.pm
View unanswered posts
View posts from last 24 hours

 
Reply to topic    Gentoo Forums Forum Index Portage & Programming
View previous topic :: View next topic  
Author Message
rac
Bodhisattva
Bodhisattva


Joined: 30 May 2002
Posts: 6553
Location: Japanifornia

PostPosted: Wed Aug 13, 2003 10:16 pm    Post subject: Pre-GLSA: CGI.pm Reply with quote

There is a cross-site scripting vulnerability in CGI.pm that was corrected in 2.94. The version in the 5.8.0 perl core is vulnerable. In a future release of perl, we may include a patched version, but I think it would be overkill to have everybody recompile perl just to address this.

Instead, anybody that is using CGI.pm should emerge the dev-perl/CGI module, which will bring you a version of CGI.pm that is not vulnerable.
_________________
For every higher wall, there is a taller ladder
Back to top
View user's profile Send private message
Display posts from previous:   
Reply to topic    Gentoo Forums Forum Index Portage & Programming All times are GMT
Page 1 of 1

 
Jump to:  
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum