SciLinux: CVE-2007-5116 perl SL4.x, SL3.x i386/x86_64
Summary
Date: Mon, 5 Nov 2007 15:05:29 -0600Reply-To: Troy DawsonSender: Security Errata for Scientific Linux From: Troy Dawson Subject: Security ERRATA for perl on SL4.x, SL3.x i386/x86_64Comments: To: scientific-linux-errata@fnal.govSynopsis: Important: perl security updateIssue date: 2007-11-05CVE Names: CVE-2007-5116A flaw was found in Perl's regular expression engine. Specially craftedinput to a regular expression can cause Perl to improperly allocate memory,possibly resulting in arbitrary code running with the permissions of theuser running Perl. (CVE-2007-5116)SL 3.0.x SRPMS:perl-5.8.0-97.EL3.src.rpm i386:perl-5.8.0-97.EL3.i386.rpmperl-CGI-2.89-97.EL3.i386.rpmperl-CPAN-1.61-97.EL3.i386.rpmperl-DB_File-1.806-97.EL3.i386.rpmperl-suidperl-5.8.0-97.EL3.i386.rpm x86_64:perl-5.8.0-97.EL3.x86_64.rpmperl-CGI-2.89-97.EL3.x86_64.rpmperl-CPAN-1.61-97.EL3.x86_64.rpmperl-DB_File-1.806-97.EL3.x86_64.rpmperl-suidperl-5.8.0-97.EL3.x86_64.rpmSL 4.x SRPMS:perl-5.8.5-36.2.src.rpm i386:perl-5.8.5-36.2.i386.rpmperl-suidperl-5.8.5-36.2.i386.rpm x86_64:perl-5.8.5-36.2.x86_64.rpmperl-suidperl-5.8.5-36.2.x86_64.rpm-Connie Sieh-Troy Dawson