SciLinux: CVE-2007-5116 perl SL5.x i386/x86_64
Summary
Date: Tue, 13 Nov 2007 16:45:38 -0600Reply-To: Troy DawsonSender: Security Errata for Scientific Linux From: Troy Dawson Subject: Security ERRATA for perl on SL5.x i386/x86_64Comments: To: scientific-linux-errata@fnal.govNow with the right subjectSynopsis: Important: perl security updateIssue date: 2007-11-05CVE Names: CVE-2007-5116A flaw was found in Perl's regular expression engine. Specially craftedinput to a regular expression can cause Perl to improperly allocatememory, possibly resulting in arbitrary code running with thepermissions of the user running Perl. (CVE-2007-5116)SL 5.x SRPMS:perl-5.8.8-10.el5_0.2.src.rpm i386:perl-5.8.8-10.el5.2.i386.rpmperl-suidperl-5.8.8-10.el5.2.i386.rpm x86_64:perl-5.8.8-10.el5.2.i386.rpmperl-5.8.8-10.el5.2.x86_64.rpmperl-suidperl-5.8.8-10.el5.2.x86_64.rpm-Connie Sieh-Troy Dawson