OSVDB ID: 2183

Title: Perl Safe.pm Access Bypass

Info

Disclosure

Nov 05, 2002

Discovery

Nov 05, 2002

Dates

Exploit

Unknown

Solution

Unknown

Description

Safe.pm contains a flaw that could allow a local or remote attacker execute code outside of Safe.pm's restricted environment called a compartment. If the compartment has been accessed at least once, an attacker could change the the mask of the compartment to access code outside of the compartment.

Classification

Unknown or Incomplete

Solution

Upgrade to the latest version of Safe.pm. Check with your vendor's website for OS specific updates or check http://www.cpan.org

Products

Perl

Safe.pm

2.06
2.07

References

Credit

Unknown or Incomplete



Direct URL: http://osvdb.org/2183