Rapid7 Vulnerability & Exploit Database

Oracle Solaris 11: CVE-2015-8607: Vulnerability in Perl 5.12

Free InsightVM Trial No Credit Card Necessary
Watch Demo See how it all works
Back to Search

Oracle Solaris 11: CVE-2015-8607: Vulnerability in Perl 5.12

Severity
8
CVSS
(AV:N/AC:L/Au:N/C:P/I:P/A:P)
Published
01/13/2016
Created
07/25/2018
Added
05/29/2017
Modified
02/01/2022

Description

The canonpath function in the File::Spec module in PathTools before 3.62, as used in Perl, does not properly preserve the taint attribute of data, which might allow context-dependent attackers to bypass the taint protection mechanism via a crafted string.

Solution(s)

  • oracle-solaris-11-3-upgrade-library-perl-5-authen-pam-5-8-4-0-175-3-19-0-1-0
  • oracle-solaris-11-3-upgrade-library-perl-5-authen-pam-512-0-16-0-175-3-19-0-1-0
  • oracle-solaris-11-3-upgrade-library-perl-5-authen-pam-522-0-16-0-175-3-19-0-1-0
  • oracle-solaris-11-3-upgrade-library-perl-5-authen-pam-584-0-16-0-175-3-19-0-1-0
  • oracle-solaris-11-3-upgrade-library-perl-5-authen-pam-threaded-512-0-16-0-175-3-19-0-1-0
  • oracle-solaris-11-3-upgrade-library-perl-5-cgi-4-28-0-175-3-19-0-1-0
  • oracle-solaris-11-3-upgrade-library-perl-5-cgi-522-4-28-0-175-3-19-0-1-0
  • oracle-solaris-11-3-upgrade-library-perl-5-database-1-636-0-175-3-19-0-1-0
  • oracle-solaris-11-3-upgrade-library-perl-5-database-512-1-636-0-175-3-19-0-1-0
  • oracle-solaris-11-3-upgrade-library-perl-5-database-522-1-636-0-175-3-19-0-1-0
  • oracle-solaris-11-3-upgrade-library-perl-5-database-584-1-636-0-175-3-19-0-1-0
  • oracle-solaris-11-3-upgrade-library-perl-5-net-ssleay-1-78-0-175-3-19-0-1-0
  • oracle-solaris-11-3-upgrade-library-perl-5-net-ssleay-512-1-78-0-175-3-19-0-1-0
  • oracle-solaris-11-3-upgrade-library-perl-5-net-ssleay-522-1-78-0-175-3-19-0-1-0
  • oracle-solaris-11-3-upgrade-library-perl-5-net-ssleay-584-1-78-0-175-3-19-0-1-0
  • oracle-solaris-11-3-upgrade-library-perl-5-perl-x11-protocol-0-56-0-175-3-19-0-1-0
  • oracle-solaris-11-3-upgrade-library-perl-5-perl-x11-protocol-512-0-56-0-175-3-19-0-1-0
  • oracle-solaris-11-3-upgrade-library-perl-5-perl-x11-protocol-522-0-56-0-175-3-19-0-1-0
  • oracle-solaris-11-3-upgrade-library-perl-5-pmtools-1-10-0-175-3-19-0-1-0
  • oracle-solaris-11-3-upgrade-library-perl-5-pmtools-512-1-10-0-175-3-19-0-1-0
  • oracle-solaris-11-3-upgrade-library-perl-5-pmtools-522-1-10-0-175-3-19-0-1-0
  • oracle-solaris-11-3-upgrade-library-perl-5-pmtools-584-1-10-0-175-3-19-0-1-0
  • oracle-solaris-11-3-upgrade-library-perl-5-xml-libxml-2-121-0-175-3-19-0-1-0
  • oracle-solaris-11-3-upgrade-library-perl-5-xml-libxml-512-2-121-0-175-3-19-0-1-0
  • oracle-solaris-11-3-upgrade-library-perl-5-xml-libxml-522-2-121-0-175-3-19-0-1-0
  • oracle-solaris-11-3-upgrade-library-perl-5-xml-libxml-threaded-512-2-121-0-175-3-19-0-1-0
  • oracle-solaris-11-3-upgrade-library-perl-5-xml-namespacesupport-1-11-0-175-3-19-0-1-0
  • oracle-solaris-11-3-upgrade-library-perl-5-xml-namespacesupport-512-1-11-0-175-3-19-0-1-0
  • oracle-solaris-11-3-upgrade-library-perl-5-xml-namespacesupport-522-1-11-0-175-3-19-0-1-0
  • oracle-solaris-11-3-upgrade-library-perl-5-xml-namespacesupport-threaded-512-1-11-0-175-3-19-0-1-0
  • oracle-solaris-11-3-upgrade-library-perl-5-xml-parser-5-12-1-0-175-3-19-0-1-0
  • oracle-solaris-11-3-upgrade-library-perl-5-xml-parser-512-2-44-0-175-3-19-0-1-0
  • oracle-solaris-11-3-upgrade-library-perl-5-xml-parser-522-2-44-0-175-3-19-0-1-0
  • oracle-solaris-11-3-upgrade-library-perl-5-xml-parser-584-2-44-0-175-3-19-0-1-0
  • oracle-solaris-11-3-upgrade-library-perl-5-xml-parser-threaded-512-2-44-0-175-3-19-0-1-0
  • oracle-solaris-11-3-upgrade-library-perl-5-xml-sax-0-99-0-175-3-19-0-1-0
  • oracle-solaris-11-3-upgrade-library-perl-5-xml-sax-512-0-99-0-175-3-19-0-1-0
  • oracle-solaris-11-3-upgrade-library-perl-5-xml-sax-522-0-99-0-175-3-19-0-1-0
  • oracle-solaris-11-3-upgrade-library-perl-5-xml-sax-base-1-8-0-175-3-19-0-1-0
  • oracle-solaris-11-3-upgrade-library-perl-5-xml-sax-base-512-1-8-0-175-3-19-0-1-0
  • oracle-solaris-11-3-upgrade-library-perl-5-xml-sax-base-522-1-8-0-175-3-19-0-1-0
  • oracle-solaris-11-3-upgrade-library-perl-5-xml-sax-base-threaded-512-1-8-0-175-3-19-0-1-0
  • oracle-solaris-11-3-upgrade-library-perl-5-xml-sax-threaded-512-0-99-0-175-3-19-0-1-0
  • oracle-solaris-11-3-upgrade-library-perl-5-xml-simple-2-18-0-175-3-19-0-1-0
  • oracle-solaris-11-3-upgrade-library-perl-5-xml-simple-512-2-18-0-175-3-19-0-1-0
  • oracle-solaris-11-3-upgrade-library-perl-5-xml-simple-522-2-18-0-175-3-19-0-1-0
  • oracle-solaris-11-3-upgrade-library-perl-5-xml-simple-584-2-18-0-175-3-19-0-1-0
  • oracle-solaris-11-3-upgrade-library-perl-5-xml-simple-threaded-512-2-18-0-175-3-19-0-1-0
  • oracle-solaris-11-3-upgrade-library-perl5-perl-tk-512-804-33-0-175-3-19-0-1-0
  • oracle-solaris-11-3-upgrade-library-perl5-perl-tk-522-804-33-0-175-3-19-0-1-0
  • oracle-solaris-11-3-upgrade-library-perl5-perl-tk-804-33-0-175-3-19-0-1-0
  • oracle-solaris-11-3-upgrade-runtime-perl-512-5-12-5-0-175-3-19-0-2-0
  • oracle-solaris-11-3-upgrade-runtime-perl-522-5-22-1-0-175-3-19-0-1-0
  • oracle-solaris-11-3-upgrade-runtime-perl-threaded-512-5-12-5-0-175-3-19-0-2-0
  • oracle-solaris-11-3-upgrade-terminal-cssh-4-2-1-0-175-3-19-0-1-0
  • oracle-solaris-11-3-upgrade-terminal-cssh-512-4-2-1-0-175-3-19-0-1-0
  • oracle-solaris-11-3-upgrade-terminal-cssh-522-4-2-1-0-175-3-19-0-1-0

With Rapid7 live dashboards, I have a clear view of all the assets on my network, which ones can be exploited, and what I need to do in order to reduce the risk in my environment in real-time. No other tool gives us that kind of value and insight.

– Scott Cheney, Manager of Information Security, Sierra View Medical Center

;