Oval Definition:oval:org.opensuse.security:def:74940
Revision Date:2020-12-01Version:1
Title:Security update for perl (Important)
Description:

This update for perl fixes the following issues:

- CVE-2020-10543: Fixed a heap buffer overflow in regular expression compiler which could have allowed overwriting of allocated memory with attacker's data (bsc#1171863). - CVE-2020-10878: Fixed multiple integer overflows which could have allowed the insertion of instructions into the compiled form of Perl regular expression (bsc#1171864). - CVE-2020-12723: Fixed an attacker's corruption of the intermediate language state of a compiled regular expression (bsc#1171866). - Fixed a bad warning in features.ph (bsc#1172348).

This update was imported from the SUSE:SLE-15:Update update project.
Family:unixClass:patch
Status:Reference(s):1047218
1171863
1171864
1171866
1172348
1175760
CVE-2020-10543
CVE-2020-10878
CVE-2020-12723
CVE-2020-24614
openSUSE-SU-2020:0850-1
openSUSE-SU-2020:1478-1
Platform(s):openSUSE Leap 15.1
openSUSE Leap 15.2
Product(s):
Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • perl-5.26.1-lp151.9.6 is installed
  • OR perl-32bit-5.26.1-lp151.9.6 is installed
  • OR perl-base-5.26.1-lp151.9.6 is installed
  • OR perl-base-32bit-5.26.1-lp151.9.6 is installed
  • OR perl-doc-5.26.1-lp151.9.6 is installed
  • Definition Synopsis
  • openSUSE Leap 15.2 is installed
  • AND fossil-2.12.1-lp152.2.3 is installed
  • BACK