Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 514
Alerts This Week
Warning Icon 1 514

Scientific Linux: Important Perl Security Advisory CVE-2007-5116

Scientific Large Esm H446
Important: perl security update
Date: Mon, 5 Nov 2007 15:05:29 -0600
Reply-To: Troy Dawson 
Sender: Security Errata for Scientific Linux
 
From: Troy Dawson 
Subject: Security ERRATA for perl on SL4.x, SL3.x i386/x86_64
Comments: To: This email address is being protected from spambots. You need JavaScript enabled to view it.

Synopsis:	Important: perl security update
Issue date:	2007-11-05
CVE Names:	CVE-2007-5116

A flaw was found in Perl's regular expression engine. Specially crafted
input to a regular expression can cause Perl to improperly allocate memory,
possibly resulting in arbitrary code running with the permissions of the
user running Perl. (CVE-2007-5116)

SL 3.0.x

 SRPMS:
perl-5.8.0-97.EL3.src.rpm
 i386:
perl-5.8.0-97.EL3.i386.rpm
perl-CGI-2.89-97.EL3.i386.rpm
perl-CPAN-1.61-97.EL3.i386.rpm
perl-DB_File-1.806-97.EL3.i386.rpm
perl-suidperl-5.8.0-97.EL3.i386.rpm
 x86_64:
perl-5.8.0-97.EL3.x86_64.rpm
perl-CGI-2.89-97.EL3.x86_64.rpm
perl-CPAN-1.61-97.EL3.x86_64.rpm
perl-DB_File-1.806-97.EL3.x86_64.rpm
perl-suidperl-5.8.0-97.EL3.x86_64.rpm

SL 4.x

 SRPMS:
perl-5.8.5-36.2.src.rpm
 i386:
perl-5.8.5-36.2.i386.rpm
perl-suidperl-5.8.5-36.2.i386.rpm
 x86_64:
perl-5.8.5-36.2.x86_64.rpm
perl-suidperl-5.8.5-36.2.x86_64.rpm

-Connie Sieh
-Troy Dawson