Bug#880458: libcatalyst-plugin-static-simple-perl: leaks files without extention, inadvertently

2017-10-31 Thread Salvatore Bonaccorso
Control: retitle -1 libcatalyst-plugin-static-simple-perl: CVE-2017-16248: leaks files without extention, inadvertently Hi This issues has been assigned CVE-2017-16248. Regards, Salvatore

Bug#880458: libcatalyst-plugin-static-simple-perl: leaks files without extention, inadvertently

2017-10-31 Thread Damyan Ivanov
Package: libcatalyst-plugin-static-simple-perl Version: 0.31 Severity: important Tags: security upstream fixed-upstream Forwarded: https://rt.cpan.org/Public/Bug/Display.html?id=120558 >From upstream changelog for version 0.34: Fix security vulnerability, when serving static files with dots