Debian Security Advisory 3441-1

Discussion in 'News Aggregator' started by Packet Storm, 12 Jan 2016.

  1. Packet Storm

    Packet Storm Guest

    Debian Linux Security Advisory 3441-1 - David Golden of MongoDB discovered that File::Spec::canonpath() in Perl returned untainted strings even if passed tainted input. This defect undermines taint propagation, which is sometimes used to ensure that unvalidated user input does not reach sensitive code.

    Continue reading...
     

Share This Page

Loading...