Logo
vulnerabilityCVE-2014-10402
Name
CVE-2014-10402
Source
NVD ( link)Debian ( link)
Description
An issue was discovered in the DBI module through 1.643 for Perl. DBD::File drivers can open files from folders other than those specifically passed via the f_dir attribute in the data source name (DSN). NOTE: this issue exists because of an incomplete fix for CVE-2014-10401.
Published Date
Updated Date
Workaround
-

Analysis#


Affected Component
Analysis
libdbi-perl
Patched

Vulnerability Ratings#


6.1
CVSSv31
3.6
CVSSv2

Others affected components#


Name
Project
Project Version
Version
Status
yocto
master
1.648
Not Affected
yocto
scarthgap
1.643
Patched

Resolved with patches#


libdbi-perl (yocto:kirkstone)

#
Title
Author
Resolve
1
lib/DBD/File.pm: fix CVE-2014-10401
Jens Rehsack <sno@netbsd.org>
CVE-2014-10402

libdbi-perl (yocto:scarthgap)

#
Title
Author
Resolve
1
lib/DBD/File.pm: fix CVE-2014-10401
Jens Rehsack <sno@netbsd.org>
CVE-2014-10402