openbsd-ports/www/p5-libwww/distinfo
jasper ed7577625a - SECURITY UPDATE of p5-libwww to 5.835
CVE-2010-2253: lwp-download in libwww-perl before 5.835 does not reject
downloads to filenames that begin with a . (dot) character, which allows
remote servers to create or overwrite files and possibly execute arbitrary
code.

from ian mcwilliam, ok sthen@
2010-09-08 07:44:03 +00:00

6 lines
308 B
Plaintext

MD5 (libwww-perl-5.835.tar.gz) = WTIFOw1WboiDjLiscR0t+A==
RMD160 (libwww-perl-5.835.tar.gz) = Mb+d7cspwNtPDWe6unYLCB2eIqI=
SHA1 (libwww-perl-5.835.tar.gz) = OfuF8JgSF8Kuc9gwUwL+Ll56PMk=
SHA256 (libwww-perl-5.835.tar.gz) = fQdXVvYqOt69fC71Sjjz9lNhcebuF/sapSTAS4oR8BQ=
SIZE (libwww-perl-5.835.tar.gz) = 270118