[Bug 884354] perl: possible arbitrary code execution via Locale::Maketext

2012-12-13 Thread bugzilla
Product: Security Response https://bugzilla.redhat.com/show_bug.cgi?id=884354 Stefan Cornelius changed: What|Removed |Added Flags|needinfo?(vda...@redhat.com |

[Bug 884354] perl: possible arbitrary code execution via Locale::Maketext

2012-12-06 Thread bugzilla
Product: Security Response https://bugzilla.redhat.com/show_bug.cgi?id=884354 Petr Pisar changed: What|Removed |Added Flags||needinfo?(vda...@

[Bug 884354] perl: possible arbitrary code execution via Locale::Maketext

2012-12-06 Thread bugzilla
Product: Security Response https://bugzilla.redhat.com/show_bug.cgi?id=884354 --- Comment #3 from Petr Pisar --- Created attachment 658787 --> https://bugzilla.redhat.com/attachment.cgi?id=658787&action=edit Template for reproducer Could show the attack vector? Attached is small code showing h