Perl Clipboard module 'clipedit. pl' insecure temporary File Processing Vulnerability
Release date:
Updated on:
Affected Systems:
Perl Clipboard 0.13
Description:
--------------------------------------------------------------------------------
Bugtraq id: 69473
Perl is a high-level, general, literal, and dynamic programming language.
Clipboard 0.13 has an insecure temporary File Processing Vulnerability. Attackers with local access permissions can exploit this vulnerability to execute symbolic link attacks to overwrite any files in the affected application context.
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Perl
----
Currently, the vendor does not provide patches or upgrade programs. We recommend that users who use the software follow the vendor's homepage to obtain the latest version:
Https://metacpan.org/release/Clipboard
Refer:
Http://seclists.org/oss-sec/2014/q3/467
This article permanently updates the link address: