Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 22 Jan 2003 14:43:54 -0300
From:      Fernan Aguero <fernan@iib.unsam.edu.ar>
To:        "Ronald F. Guilmette" <rfg@monkeys.com>
Cc:        ports@FreeBSD.ORG
Subject:   Re: Serious Security BUG in CGI::Lite
Message-ID:  <20030122174354.GH35269@iib.unsam.edu.ar>
In-Reply-To: <97115.1043256548@monkeys.com>
References:  <97115.1043256548@monkeys.com>

next in thread | previous in thread | raw e-mail | index | archive | help
+----[ Ronald F. Guilmette <rfg@monkeys.com> (22.Jan.2003 14:30):
| 
| I believe that I have found a serious security bug in the CGI::Lite
| package that's distributed as par of the FreeBSD ports collection.

Is this a FreeBSD specific bug? In principle I wouldn't
think so, since we're talking about a perl module ...

Also note that security issues due to third party software
(any software installed through the ports system) are dealt
with differently than issues with the base system (though
some ports are actually important, security-wise).

Have you tried to contact the author of the module (look in
search.cpan.org) to see if s/he is already aware of it?

Hope this helps,

Fernan

|
+----]

-- 
F e r n a n   A g u e r o
http://genoma.unsam.edu.ar/~fernan

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-ports" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20030122174354.GH35269>