oss-sec mailing list archives

Re: Reverse lookup issue in Net::Server


From: Kurt Seifried <kseifried () redhat com>
Date: Wed, 13 Mar 2013 19:23:17 -0600

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On 03/13/2013 02:56 PM, Salvatore Bonaccorso wrote:
Hi

Yup. Please use CVE-2013-1841 for this issue.

Thank you Kurt for assinging the CVE. Upstream already answered on 
this on the request tracker[1] and Paul mentions they will add an 
option to do the forward lookup.

[1]: https://rt.cpan.org/Ticket/Display.html?id=83909

Regards, Salvatore

Shouldn't that be the default and not an option?


- -- 
Kurt Seifried Red Hat Security Response Team (SRT)
PGP: 0x5E267993 A90B F995 7350 148F 66BF 7554 160D 4553 5E26 7993
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.13 (GNU/Linux)
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=1VhZ
-----END PGP SIGNATURE-----


Current thread: