Vulnerability Bulletins |
DSA-3441 perl - security update |
|
| Affected software | Debian |
|
David Golden of MongoDB discovered that File::Spec::canonpath() in Perlreturned untainted strings even if passed tainted input. This defectundermines taint propagation, which is sometimes used to ensure thatunvalidated user input does not reach sensitive code. More info: https://www.debian.org/security/2016/dsa-3441 |
|






