跳转到帖子

Red Hat: CVE-2024-45321: perl-App-cpanminus: Insecure HTTP in App::cpanminus Allows Code Execution Vulnerability (Multiple Advisories)

recommended_posts

发布于
  • Members

Red Hat: CVE-2024-45321: perl-App-cpanminus: Insecure HTTP in App::cpanminus Allows Code Execution Vulnerability (Multiple Advisories)

Severity
8
CVSS
(AV:N/AC:H/Au:N/C:C/I:C/A:C)
Published
08/27/2024
Created
02/11/2025
Added
02/10/2025
Modified
02/10/2025

Description

The App::cpanminus package through 1.7047 for Perl downloads code via insecure HTTP, enabling code execution for network attackers.

Solution(s)

  • redhat-upgrade-perl
  • redhat-upgrade-perl-app-cpanminus
  • redhat-upgrade-perl-cpan-distnameinfo
  • redhat-upgrade-perl-cpan-meta-check
  • redhat-upgrade-perl-file-pushd
  • redhat-upgrade-perl-module-cpanfile
  • redhat-upgrade-perl-parse-pmfile
  • redhat-upgrade-perl-string-shellquote

References

  • CVE-2024-45321
  • RHSA-2024:10218
  • RHSA-2024:10219
  • 查看数 692
  • 已创建
  • 最后回复

参与讨论

你可立刻发布并稍后注册。 如果你有帐户,立刻登录发布帖子。

游客
回帖…