openbsd-ports/www/p5-libwww
jasper ed7577625a - SECURITY UPDATE of p5-libwww to 5.835
CVE-2010-2253: lwp-download in libwww-perl before 5.835 does not reject
downloads to filenames that begin with a . (dot) character, which allows
remote servers to create or overwrite files and possibly execute arbitrary
code.

from ian mcwilliam, ok sthen@
2010-09-08 07:44:03 +00:00
..
pkg
distinfo - SECURITY UPDATE of p5-libwww to 5.835 2010-09-08 07:44:03 +00:00
Makefile - SECURITY UPDATE of p5-libwww to 5.835 2010-09-08 07:44:03 +00:00