[Bug 1877402] CVE-2020-14392 perl-dbi: Memory corruption in XS functions when Perl stack is reallocated

2021-11-02 Thread bugzilla
https://bugzilla.redhat.com/show_bug.cgi?id=1877402

Todd Cullum  changed:

   What|Removed |Added

 Status|NEW |CLOSED
 Resolution|--- |WONTFIX
Last Closed||2021-11-02 17:24:39




-- 
You are receiving this mail because:
You are on the CC list for the bug.
https://bugzilla.redhat.com/show_bug.cgi?id=1877402
___
perl-devel mailing list -- perl-devel@lists.fedoraproject.org
To unsubscribe send an email to perl-devel-le...@lists.fedoraproject.org
Fedora Code of Conduct: 
https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: 
https://lists.fedoraproject.org/archives/list/perl-devel@lists.fedoraproject.org
Do not reply to spam on the list, report it: 
https://pagure.io/fedora-infrastructure


[Bug 1877402] CVE-2020-14392 perl-dbi: Memory corruption in XS functions when Perl stack is reallocated

2021-02-22 Thread bugzilla
https://bugzilla.redhat.com/show_bug.cgi?id=1877402


--- Doc Text *updated* by RaTasha Tillery-Smith  ---
An untrusted pointer dereference flaw was found in Perl-DBI before version 
1.643. This flaw allows a local attacker who can manipulate calls to 
dbd_db_login6_sv() to cause memory corruption. The highest threat from this 
vulnerability is to system availability.



-- 
You are receiving this mail because:
You are on the CC list for the bug.
___
perl-devel mailing list -- perl-devel@lists.fedoraproject.org
To unsubscribe send an email to perl-devel-le...@lists.fedoraproject.org
Fedora Code of Conduct: 
https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: 
https://lists.fedoraproject.org/archives/list/perl-devel@lists.fedoraproject.org
Do not reply to spam on the list, report it: 
https://pagure.io/fedora-infrastructure


[Bug 1877402] CVE-2020-14392 perl-dbi: Memory corruption in XS functions when Perl stack is reallocated

2020-09-25 Thread bugzilla
https://bugzilla.redhat.com/show_bug.cgi?id=1877402
Bug 1877402 depends on bug 1877403, which changed state.

Bug 1877403 Summary: CVE-2020-14392 perl-DBI: Memory corruption in XS functions 
when Perl stack is reallocated [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=1877403

   What|Removed |Added

 Status|ON_QA   |CLOSED
 Resolution|--- |ERRATA




-- 
You are receiving this mail because:
You are on the CC list for the bug.
___
perl-devel mailing list -- perl-devel@lists.fedoraproject.org
To unsubscribe send an email to perl-devel-le...@lists.fedoraproject.org
Fedora Code of Conduct: 
https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: 
https://lists.fedoraproject.org/archives/list/perl-devel@lists.fedoraproject.org


[Bug 1877402] CVE-2020-14392 perl-dbi: Memory corruption in XS functions when Perl stack is reallocated

2020-09-10 Thread bugzilla
https://bugzilla.redhat.com/show_bug.cgi?id=1877402



--- Comment #5 from Todd Cullum  ---
External References:

Advisory:
https://metacpan.org/pod/distribution/DBI/Changes#Changes-in-DBI-1.643-...


-- 
You are receiving this mail because:
You are on the CC list for the bug.
___
perl-devel mailing list -- perl-devel@lists.fedoraproject.org
To unsubscribe send an email to perl-devel-le...@lists.fedoraproject.org
Fedora Code of Conduct: 
https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: 
https://lists.fedoraproject.org/archives/list/perl-devel@lists.fedoraproject.org


[Bug 1877402] CVE-2020-14392 perl-dbi: Memory corruption in XS functions when Perl stack is reallocated

2020-09-10 Thread bugzilla
https://bugzilla.redhat.com/show_bug.cgi?id=1877402

Todd Cullum  changed:

   What|Removed |Added

   Priority|medium  |low
   Severity|medium  |low


--- Doc Text *updated* ---
An untrusted pointer dereference flaw was found in Perl-DBI < 1.643. A local 
attacker who is able to manipulate calls to dbd_db_login6_sv() could cause 
memory corruption, affecting the service's availability.



-- 
You are receiving this mail because:
You are on the CC list for the bug.
___
perl-devel mailing list -- perl-devel@lists.fedoraproject.org
To unsubscribe send an email to perl-devel-le...@lists.fedoraproject.org
Fedora Code of Conduct: 
https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: 
https://lists.fedoraproject.org/archives/list/perl-devel@lists.fedoraproject.org


[Bug 1877402] CVE-2020-14392 perl-dbi: Memory corruption in XS functions when Perl stack is reallocated

2020-09-09 Thread bugzilla
https://bugzilla.redhat.com/show_bug.cgi?id=1877402

Guilherme de Almeida Suckevicz  changed:

   What|Removed |Added

Summary|perl-dbi: Memory corruption |CVE-2020-14392 perl-dbi:
   |in XS functions when Perl   |Memory corruption in XS
   |stack is reallocated|functions when Perl stack
   ||is reallocated
  Alias||CVE-2020-14392




-- 
You are receiving this mail because:
You are on the CC list for the bug.
___
perl-devel mailing list -- perl-devel@lists.fedoraproject.org
To unsubscribe send an email to perl-devel-le...@lists.fedoraproject.org
Fedora Code of Conduct: 
https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: 
https://lists.fedoraproject.org/archives/list/perl-devel@lists.fedoraproject.org