CVE-2016-2381
08.04.2016, 15:59
Perl might allow context-dependent attackers to bypass the taint protection mechanism in a child process via duplicate environment variables in envp.Enginsight
| Vendor | Product | Version |
|---|---|---|
| perl | perl | 𝑥 < 5.23.9 |
| debian | debian_linux | 7.0 |
| debian | debian_linux | 8.0 |
| oracle | communications_billing_and_revenue_management | 7.5 |
| oracle | configuration_manager | 𝑥 < 12.1.2.0.4 |
| oracle | configuration_manager | 12.1.2.0.6 |
| oracle | database_server | 11.2.0.4 |
| oracle | database_server | 12.1.0.2 |
| oracle | database_server | 12.2.0.1 |
| oracle | enterprise_manager_base_platform | 13.2.0.0.0 |
| oracle | enterprise_manager_base_platform | 13.3.0.0.0 |
| oracle | timesten_in-memory_database | 𝑥 < 18.1.2.1.0 |
| oracle | solaris | 11.3 |
| opensuse | opensuse | 13.2 |
| canonical | ubuntu_linux | 12.04 |
| canonical | ubuntu_linux | 14.04 |
| canonical | ubuntu_linux | 15.10 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Common Weakness Enumeration
References