Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

CVE-2011-4116 | perl-base (CWE-59) #94

Closed
ckalpakoglu opened this issue Feb 9, 2023 · 1 comment
Closed

CVE-2011-4116 | perl-base (CWE-59) #94

ckalpakoglu opened this issue Feb 9, 2023 · 1 comment
Assignees
Labels
bug Something isn't working KONDUKTO wontfix This will not be worked on

Comments

@ckalpakoglu
Copy link

Due Date: 0001-01-01

A low severity vulnerability has been discovered in your project.

Project Name: servicenow_test

Scanner Name: trivy

Cwe ID: 59

Cwe Name: Improper Link Resolution Before File Access (Link Following)

Cwe Link: https://cwe.mitre.org/data/definitions/59.html

CVE ID: CVE-2011-4116

Target: nginx:latest (debian 11.6)

Packages:

  • perl-base : 5.32.1-4+deb11u2 - Fixed Version:

References:

Tool Description: _is_safe in the File::Temp module for Perl does not properly handle symlinks.

Custom Description: test

Kondukto Link: https://82.kondukto.local/projects/63e2545dbf77a650cf3de18a/vulns/appsec?page=1&perPage=15&id=in:63e25890c3b2a1fe0cd7915f
Deeplink: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-4116

@ckalpakoglu ckalpakoglu added bug Something isn't working KONDUKTO labels Feb 9, 2023
@ckalpakoglu ckalpakoglu self-assigned this Feb 9, 2023
@ckalpakoglu ckalpakoglu added the wontfix This will not be worked on label Feb 14, 2023
@ckalpakoglu
Copy link
Author

The issue has been closed by Kondukto since it is marked as won't fix.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
bug Something isn't working KONDUKTO wontfix This will not be worked on
Projects
None yet
Development

No branches or pull requests

1 participant