Search CVE reports


Toggle filters

201 – 210 of 248 results


CVE-2010-4501

Medium priority
Ignored

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2010-4334. Reason: This candidate is a duplicate of CVE-2010-4334. Notes: All CVE users should reference CVE-2010-4334 instead of this candidate. All references...

1 affected package

libio-socket-ssl-perl

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libio-socket-ssl-perl
Show less packages

CVE-2010-4411

Medium priority

Some fixes available 4 of 13

Unspecified vulnerability in CGI.pm 3.50 and earlier allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via unknown vectors. NOTE: this issue exists because of an incomplete fix...

3 affected packages

libcgi-pm-perl, libcgi-simple-perl, perl

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libcgi-pm-perl
libcgi-simple-perl
perl
Show less packages

CVE-2010-4410

Medium priority

Some fixes available 4 of 13

CRLF injection vulnerability in the header function in (1) CGI.pm before 3.50 and (2) Simple.pm in CGI::Simple 1.112 and earlier allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks...

3 affected packages

libcgi-pm-perl, libcgi-simple-perl, perl

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libcgi-pm-perl
libcgi-simple-perl
perl
Show less packages

CVE-2010-2761

Medium priority

Some fixes available 4 of 13

The multipart_init function in (1) CGI.pm before 3.50 and (2) Simple.pm in CGI::Simple 1.112 and earlier uses a hardcoded value of the MIME boundary string in multipart/x-mixed-replace content, which allows remote attackers to...

3 affected packages

libcgi-pm-perl, libcgi-simple-perl, perl

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libcgi-pm-perl
libcgi-simple-perl
perl
Show less packages

CVE-2010-2253

Medium priority
Fixed

lwp-download in libwww-perl before 5.835 does not reject downloads to filenames that begin with a . (dot) character, which allows remote servers to create or overwrite files via (1) a 3xx redirect to a URL with a crafted filename...

1 affected package

libwww-perl

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libwww-perl
Show less packages

CVE-2010-1168

Medium priority

Some fixes available 5 of 7

The Safe (aka Safe.pm) module before 2.25 for Perl allows context-dependent attackers to bypass intended (1) Safe::reval and (2) Safe::rdo access restrictions, and inject and execute arbitrary code, via vectors...

1 affected package

perl

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
perl
Show less packages

CVE-2010-1447

Medium priority

Some fixes available 5 of 7

The Safe (aka Safe.pm) module 2.26, and certain earlier versions, for Perl, as used in PostgreSQL 7.4 before 7.4.29, 8.0 before 8.0.25, 8.1 before 8.1.21, 8.2 before 8.2.17, 8.3 before 8.3.11, 8.4 before 8.4.4, and 9.0 Beta before...

1 affected package

perl

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
perl
Show less packages

CVE-2010-1158

Low priority
Ignored

Integer overflow in the regular expression engine in Perl 5.8.x allows context-dependent attackers to cause a denial of service (stack consumption and application crash) by matching a crafted regular expression against a long string.

1 affected package

perl

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
perl
Show less packages

CVE-2010-0044

Low priority
Needs evaluation

PubSub in Apple Safari before 4.0.5 does not properly implement use of the Accept Cookies preference to block cookies, which makes it easier for remote web servers to track users by setting a cookie in a (1) RSS or (2) Atom feed.

2 affected packages

libpoe-component-pubsub-perl, libipc-pubsub-perl

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libpoe-component-pubsub-perl Needs evaluation Needs evaluation Needs evaluation Needs evaluation
libipc-pubsub-perl Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2009-3626

Medium priority
Not affected

Perl 5.10.1 allows context-dependent attackers to cause a denial of service (application crash) via a UTF-8 character with a large, invalid codepoint, which is not properly handled during a regular-expression match.

1 affected package

perl

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
perl
Show less packages