CVE Database
/

CVE-2015-8607

Back to search

CVE-2015-8607

Published: Jan 13, 2016

Modified: Aug 6, 2024

PUBLISHED

Description

The canonpath function in the File::Spec module in PathTools before 3.62, as used in Perl, does not properly preserve the taint attribute of data, which might allow context-dependent attackers to bypass the taint protection mechanism via a crafted string.

VendorProductVersions

n/a

n/a

affected
n/a

References

GLSA-201701-75
vendor-advisory
x_refsource_GENTOO
80504
vdb-entry
x_refsource_BID
1034772
vdb-entry
x_refsource_SECTRACK
FEDORA-2016-4ca904238f
vendor-advisory
x_refsource_FEDORA
DSA-3441
vendor-advisory
x_refsource_DEBIAN
FEDORA-2016-69e506e02d
vendor-advisory
x_refsource_FEDORA
USN-2878-1
vendor-advisory
x_refsource_UBUNTU
openSUSE-SU-2016:0881
vendor-advisory
x_refsource_SUSE

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now