CVE-2013-2145
Publication date 6 June 2013
Last updated 24 July 2024
Ubuntu priority
The cpansign verify functionality in the Module::Signature module before 0.72 for Perl allows attackers to bypass the signature check and execute arbitrary code via a SIGNATURE file with a "special unknown cipher" that references an untrusted module in Digest/.
Status
Package | Ubuntu Release | Status |
---|---|---|
libmodule-signature-perl | ||
Patch details
Package | Patch details |
---|---|
libmodule-signature-perl |
References
Related Ubuntu Security Notices (USN)
- USN-1896-1
- Module::Signature perl module vulnerability
- 3 July 2013