You are here
Home > Preporuke > Sigurnosni nedostatak programske biblioteke libdbi-perl

Sigurnosni nedostatak programske biblioteke libdbi-perl

  • Detalji os-a: WN7
  • Važnost: IMP
  • Operativni sustavi: L
  • Kategorije: LUB

==========================================================================
Ubuntu Security Notice USN-4534-1
September 23, 2020

libdbi-perl vulnerability
==========================================================================

A security issue affects these releases of Ubuntu and its derivatives:

– Ubuntu 18.04 LTS
– Ubuntu 16.04 LTS
– Ubuntu 14.04 ESM
– Ubuntu 12.04 ESM

Summary:

Perl DBI module could be made to crash or expose sensitive information if it
received a specially crafted input.

Software Description:
– libdbi-perl: Perl Database Interface (DBI)

Details:

It was discovered that Perl DBI module incorrectly handled certain inputs.
An attacker could possibly use this issue to cause a crash or expose sensitive
information.

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 18.04 LTS:
libdbi-perl 1.640-1ubuntu0.2

Ubuntu 16.04 LTS:
libdbi-perl 1.634-1ubuntu0.2

Ubuntu 14.04 ESM:
libdbi-perl 1.630-1ubuntu0.1~esm5

Ubuntu 12.04 ESM:
libdbi-perl 1.616-1ubuntu0.2

In general, a standard system update will make all the necessary changes.

References:
https://usn.ubuntu.com/4534-1
CVE-2019-20919

Package Information:
https://launchpad.net/ubuntu/+source/libdbi-perl/1.640-1ubuntu0.2
https://launchpad.net/ubuntu/+source/libdbi-perl/1.634-1ubuntu0.2
—–BEGIN PGP SIGNATURE—–
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=82KV
—–END PGP SIGNATURE—–

AutorBruno Varga
Cert idNCERT-REF-2020-09-0001-ADV
CveCERT-CVE-DUMMY
ID izvornikaCERT-ORIGID-DUMMY
ProizvodCERT-DUMMY-PRODUCT
IzvorAdobe
Top
More in Preporuke
Sigurnosni nedostaci programskih paketa jenkins i openshift

Otkriveni su sigurnosni nedostaci u programskim paketima jenkins i openshift za operacijski sustav RHEL. Otkriveni nedostaci potencijalnim udaljenim napadačima omogućuju...

Close