Skip to content

Commit

Permalink
Catch up on mor eperl CVE backporting, up to v5.40.0
Browse files Browse the repository at this point in the history
  • Loading branch information
briandfoy committed Sep 10, 2024
1 parent 8cbb1e8 commit 20fc879
Showing 1 changed file with 18 additions and 5 deletions.
23 changes: 18 additions & 5 deletions cpansa/CPANSA-perl.yml
Original file line number Diff line number Diff line change
Expand Up @@ -1020,23 +1020,30 @@ advisories:
- affected_versions:
- '>=5.30.0,<5.34.3'
- '>=5.36.0,<5.36.3'
- '>=5.38.0,<5.38.2'
- '==5.38.0'
cves:
- CVE-2023-47038
description: |
A crafted regular expression when compiled by perl 5.30.0 through 5.38.0 can cause a one attacker controlled byte buffer overflow in a heap allocated buffer
fixed_versions:
- 5.34.3
- 5.36.3
- 5.38.2
- 5.38.1
github_security_advisory:
- GHSA-96fh-9q43-rmjh
id: CPANSA-perl-2023-47038
references: []
references:
- https://perldoc.perl.org/perl5342delta
- https://perldoc.perl.org/perl5363delta
- https://perldoc.perl.org/perl5381delta
- https://perldoc.perl.org/perl5382delta
- https://perldoc.perl.org/perl5400delta
reported: 2023-10-30
severity: ~
- affected_versions:
- <=5.38.0
- <5.34.2
- >=5.36.0,<5.36.3
- ==5.38.0
cves:
- CVE-2023-47039
description: |
Expand All @@ -1047,7 +1054,13 @@ advisories:
github_security_advisory:
- GHSA-44qm-928x-6p3g
id: CPANSA-perl-2023-47039
references: []
references:
- https://github.com/ycdxsb/WindowsPrivilegeEscalation
- https://perldoc.perl.org/perl5342delta
- https://perldoc.perl.org/perl5363delta
- https://perldoc.perl.org/perl5381delta
- https://perldoc.perl.org/perl5382delta
- https://perldoc.perl.org/perl5400delta
reported: 2023-10-30
severity: ~
- affected_versions:
Expand Down

0 comments on commit 20fc879

Please sign in to comment.