OVMSA-2016-0076

OVMSA-2016-0076 - perl security update

Type:SECURITY
Severity:NA
Release Date:2016-06-20

Description


[4:5.8.8-43]
- Do not extend allowable epoch values in Time::Local::timelocal to remove
useless warning on 64-bit platforms (Resolves: rhbz#1149375)

[4:5.8.8-42]
- Fix perl segfaults with custom signal handle (Resolves: rhbz#991854)
- Reorder AnyDBM_File back-end preference (Resolves: rhbz#1018721)
- Fix backslash interpolation in Locale::Maketext (Resolves: rhbz#1029016)
- Enable year 2038 for Time::Local on 64-bit platforms (Resolves: rhbz#1057047)

[4:5.8.8-41]
- 800340 - strftime memory leak perl bug (RT#73520)
- Resolves: rhbz#800340

[4:5.8.8-40]
- Fix CVE-2012-5195 heap buffer overrun at repeatcpy (Resolves: rhbz#915691)
- Fix CVE-2012-5526 newline injection due to improper CRLF escaping in
Set-Cookie and P3P headers (Resolves: rhbz#915691)
- Fix CVE-2012-6329 possible arbitrary code execution via Locale::Maketext
(Resolves: rhbz#915691)
- Fix CVE-2013-1667 DoS in rehashing code (Resolves: rhbz#915691)

[4:5.8.8-39.el5]
- 848156 - Reverts code of perl-5.8.8-U32019.patch
- Resolves: rhbz#848156


Related CVEs


CVE-2012-5195
CVE-2012-5526
CVE-2012-6329
CVE-2013-1667

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle VM 3.2 (x86_64) perl-5.8.8-43.el5_11.src.rpm7180b7d2af75280a76784d58f43e2fa4OVMBA-2018-0158
perl-5.8.8-43.el5_11.x86_64.rpm523043e5811ba319258d1d00d5273918OVMBA-2018-0158



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete