CVE Database
/

CVE-2010-1447

Back to search

CVE-2010-1447

Published: May 19, 2010

Modified: Aug 7, 2024

PUBLISHED

Description

The Safe (aka Safe.pm) module 2.26, and certain earlier versions, for Perl, as used in PostgreSQL 7.4 before 7.4.29, 8.0 before 8.0.25, 8.1 before 8.1.21, 8.2 before 8.2.17, 8.3 before 8.3.11, 8.4 before 8.4.4, and 9.0 Beta before 9.0 Beta 2, allows context-dependent attackers to bypass intended (1) Safe::reval and (2) Safe::rdo access restrictions, and inject and execute arbitrary code, via vectors involving subroutine references and delayed execution.

VendorProductVersions

n/a

n/a

affected
n/a

References

MDVSA-2010:115
vendor-advisory
x_refsource_MANDRIVA
DSA-2267
vendor-advisory
x_refsource_DEBIAN
oval:org.mitre.oval:def:7320
vdb-entry
signature
x_refsource_OVAL
ADV-2010-1167
vdb-entry
x_refsource_VUPEN
39845
third-party-advisory
x_refsource_SECUNIA
oval:org.mitre.oval:def:11530
vdb-entry
signature
x_refsource_OVAL
64756
vdb-entry
x_refsource_OSVDB
RHSA-2010:0457
vendor-advisory
x_refsource_REDHAT
40049
third-party-advisory
x_refsource_SECUNIA
40052
third-party-advisory
x_refsource_SECUNIA
RHSA-2010:0458
vendor-advisory
x_refsource_REDHAT
1023988
vdb-entry
x_refsource_SECTRACK
40305
vdb-entry
x_refsource_BID
MDVSA-2010:116
vendor-advisory
x_refsource_MANDRIVA

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now