Vulnerability Bulletins

DSA-3441 perl - security update

   
Affected software Debian
 
David Golden of MongoDB discovered that File::Spec::canonpath() in Perlreturned untainted strings even if passed tainted input. This defectundermines taint propagation, which is sometimes used to ensure thatunvalidated user input does not reach sensitive code.

More info:

https://www.debian.org/security/2016/dsa-3441