Direct naar de inhoud
Kritieke cyberalerts voor jouw sector & systemen — direct in je inbox. Aanmelden →
CVE's Videos Dagbriefing

← Terug naar CVE-database

CVE-2015-8607

HIGH · 7.3 CVSS Gepubliceerd: CWE-20

Beschrijving

The canonpath function in the File::Spec module in PathTools before 3.62, as used in Perl, does not properly preserve the taint attribute of data, which might allow context-dependent attackers to bypass the taint protection mechanism via a crafted string.

Vendors

Canonical Perl Debian

Affected products

Ubuntu Linux Pathtools Debian Linux

References