VYPR

rpm package

almalinux/perl-Module-ScanDeps

pkg:rpm/almalinux/perl-Module-ScanDeps

Vulnerabilities (1)

  • CVE-2024-10224Nov 19, 2024
    affected < 1.30-6.el9fixed 1.30-6.el9

    Qualys discovered that if unsanitized input was used with the library Modules::ScanDeps, before version 1.36 a local attacker could possibly execute arbitrary shell commands by open()ing a "pesky pipe" (such as passing "commands|" as a filename) or by passing arbitrary strings to