CVE-2013-7284 Information

Description

The PlRPC module possibly 0.2020 and earlier for Perl uses the Storable module which allows remote attackers to execute arbitrary code via a crafted request which is not properly handled when it is deserialized.

Reference

http://seclists.org/oss-sec/2014/q1/56 http://seclists.org/oss-sec/2014/q1/62 https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=734789 https://bugzilla.redhat.com/show_bug.cgi?id=1030572 https://bugzilla.redhat.com/show_bug.cgi?id=1051108 https://rt.cpan.org/Public/Bug/Display.html?id=90474

Share on: