<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Perl Security Vulnerability in Operating System - HP-UX</title>
    <link>https://community.hpe.com/t5/operating-system-hp-ux/perl-security-vulnerability/m-p/4344873#M344055</link>
    <description>Hi:&lt;BR /&gt;&lt;BR /&gt;A more update (secure) version is available from CPAN:&lt;BR /&gt;&lt;BR /&gt;&lt;A href="http://search.cpan.org/~dland/File-Path-2.07/Path.pm" target="_blank"&gt;http://search.cpan.org/~dland/File-Path-2.07/Path.pm&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;See the notes in the Security Considerations section.&lt;BR /&gt;&lt;BR /&gt;Regards!&lt;BR /&gt;&lt;BR /&gt;...JRF...&lt;BR /&gt;&lt;BR /&gt;</description>
    <pubDate>Mon, 26 Jan 2009 17:41:20 GMT</pubDate>
    <dc:creator>James R. Ferguson</dc:creator>
    <dc:date>2009-01-26T17:41:20Z</dc:date>
    <item>
      <title>Perl Security Vulnerability</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/perl-security-vulnerability/m-p/4344871#M344053</link>
      <description>I am researching a security vulnerability found in HP-UX’s Perl. I’ve looked all over HP’s site and cannot find an update or even an acknowledgment of this issue. Any ideas?&lt;BR /&gt;&lt;BR /&gt;Here’s more info:&lt;BR /&gt;&lt;BR /&gt;&lt;A href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-5303" target="_blank"&gt;http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-5303&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;Thanks.</description>
      <pubDate>Mon, 26 Jan 2009 17:18:35 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/perl-security-vulnerability/m-p/4344871#M344053</guid>
      <dc:creator>moonchild</dc:creator>
      <dc:date>2009-01-26T17:18:35Z</dc:date>
    </item>
    <item>
      <title>Re: Perl Security Vulnerability</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/perl-security-vulnerability/m-p/4344872#M344054</link>
      <description>Hi,&lt;BR /&gt;&lt;BR /&gt;Is this releated to HP-UX Perl ??</description>
      <pubDate>Mon, 26 Jan 2009 17:40:36 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/perl-security-vulnerability/m-p/4344872#M344054</guid>
      <dc:creator>Avinash20</dc:creator>
      <dc:date>2009-01-26T17:40:36Z</dc:date>
    </item>
    <item>
      <title>Re: Perl Security Vulnerability</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/perl-security-vulnerability/m-p/4344873#M344055</link>
      <description>Hi:&lt;BR /&gt;&lt;BR /&gt;A more update (secure) version is available from CPAN:&lt;BR /&gt;&lt;BR /&gt;&lt;A href="http://search.cpan.org/~dland/File-Path-2.07/Path.pm" target="_blank"&gt;http://search.cpan.org/~dland/File-Path-2.07/Path.pm&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;See the notes in the Security Considerations section.&lt;BR /&gt;&lt;BR /&gt;Regards!&lt;BR /&gt;&lt;BR /&gt;...JRF...&lt;BR /&gt;&lt;BR /&gt;</description>
      <pubDate>Mon, 26 Jan 2009 17:41:20 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/perl-security-vulnerability/m-p/4344873#M344055</guid>
      <dc:creator>James R. Ferguson</dc:creator>
      <dc:date>2009-01-26T17:41:20Z</dc:date>
    </item>
    <item>
      <title>Re: Perl Security Vulnerability</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/perl-security-vulnerability/m-p/4344874#M344056</link>
      <description>&lt;A href="http://securitytracker.com/alerts/2005/Jun/1014213.html" target="_blank"&gt;http://securitytracker.com/alerts/2005/Jun/1014213.html&lt;/A&gt;</description>
      <pubDate>Mon, 26 Jan 2009 17:50:19 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/perl-security-vulnerability/m-p/4344874#M344056</guid>
      <dc:creator>Avinash20</dc:creator>
      <dc:date>2009-01-26T17:50:19Z</dc:date>
    </item>
    <item>
      <title>Re: Perl Security Vulnerability</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/perl-security-vulnerability/m-p/4344875#M344057</link>
      <description>Yes this is related to HPUX's PERL&lt;BR /&gt;&lt;BR /&gt;</description>
      <pubDate>Mon, 26 Jan 2009 18:09:47 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/perl-security-vulnerability/m-p/4344875#M344057</guid>
      <dc:creator>moonchild</dc:creator>
      <dc:date>2009-01-26T18:09:47Z</dc:date>
    </item>
    <item>
      <title>Re: Perl Security Vulnerability</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/perl-security-vulnerability/m-p/4344876#M344058</link>
      <description>Hi (again):&lt;BR /&gt;&lt;BR /&gt;As I suggested, you can download a newer version of the module from CPAN and install that.&lt;BR /&gt;&lt;BR /&gt;Regards!&lt;BR /&gt;&lt;BR /&gt;...JRF...</description>
      <pubDate>Mon, 26 Jan 2009 18:15:37 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/perl-security-vulnerability/m-p/4344876#M344058</guid>
      <dc:creator>James R. Ferguson</dc:creator>
      <dc:date>2009-01-26T18:15:37Z</dc:date>
    </item>
    <item>
      <title>Re: Perl Security Vulnerability</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/perl-security-vulnerability/m-p/4344877#M344059</link>
      <description>but this a different one:&lt;BR /&gt;&lt;BR /&gt;Race condition in the rmtree function in File::Path 1.08 (lib/File/Path.pm) in Perl 5.8.8 allows local users to allows local users to delete arbitrary files via a symlink attack, a different vulnerability than CVE-2005-0448, CVE-2004-0452, and CVE-2008-2827. NOTE: this is a regression error related to CVE-2005-0448. It is different from CVE-2008-5302 due to affected versions. &lt;BR /&gt;&lt;BR /&gt;and am looking to see if HP has new patched perl version?</description>
      <pubDate>Mon, 26 Jan 2009 20:02:27 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/perl-security-vulnerability/m-p/4344877#M344059</guid>
      <dc:creator>moonchild</dc:creator>
      <dc:date>2009-01-26T20:02:27Z</dc:date>
    </item>
    <item>
      <title>Re: Perl Security Vulnerability</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/perl-security-vulnerability/m-p/4344878#M344060</link>
      <description>Hi (again):&lt;BR /&gt;&lt;BR /&gt;&amp;gt; and am looking to see if HP has new patched perl version?&lt;BR /&gt;&lt;BR /&gt;It isn't HP that is going to patch this.  This is a Perl community "issue" and would probably be addressed by the module's maintainer.  You can query:&lt;BR /&gt;&lt;BR /&gt;&lt;A href="http://rt.cpan.org/Public/Dist/Display.html?Name=File-Path" target="_blank"&gt;http://rt.cpan.org/Public/Dist/Display.html?Name=File-Path&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;Regards!&lt;BR /&gt;&lt;BR /&gt;...JRF...</description>
      <pubDate>Mon, 26 Jan 2009 21:21:04 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/perl-security-vulnerability/m-p/4344878#M344060</guid>
      <dc:creator>James R. Ferguson</dc:creator>
      <dc:date>2009-01-26T21:21:04Z</dc:date>
    </item>
  </channel>
</rss>

