Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 514
Alerts This Week
Warning Icon 1 514

Ubuntu 12.10: 1770-1 Critical Advisory on Perl Denial of Service

ubuntu
Calendar Grey March 19, 2013
Scroller Ubuntu
A flaw in Perl may lead to service interruptions; protect your Ubuntu installation by upgrading to the most recent package releases.
Perl could be made to stop responding if it received specially crafted input.

Summary

Perl could be made to stop responding if it received specially crafted

input.

Software Description:

- perl: Practical Extraction and Report Language

Details:

Yves Orton discovered that Perl incorrectly handled hashing when using

user-provided hash keys. An attacker could use this flaw to perform a

denial of service attack against software written in Perl.

Update Instructions

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 12.10:
  perl                            5.14.2-13ubuntu0.2

Ubuntu 12.04 LTS:
  perl                            5.14.2-6ubuntu2.3

Ubuntu 11.10:
  perl                            5.12.4-4ubuntu0.2

Ubuntu 10.04 LTS:
  perl                            5.10.1-8ubuntu2.3

Ubuntu 8.04 LTS:
  perl                            5.8.8-12ubuntu0.8

In general, a standard system update will make all the necessary changes.

References

https://ubuntu.com/security/notices/USN-1770-1

CVE-2013-1667

Severity
critical
Lowest
Low
Medium
High
Critical

March 19, 2013

Package Information

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.