CVE-2012-5195 Buffer Errors vulnerability in Perl

CVE DescriptionCVSSv2 Base ScoreComponentProduct and Resolution
CVE-2012-5195 Buffer Errors vulnerability 7.5 Perl 5.8
Solaris 10 SPARC: 148561-06 X86: 148562-06
Solaris 11.1 11.1.11.4.0

This notification describes vulnerabilities fixed in third-party components that are included in Oracle's product distributions.
Information about vulnerabilities affecting Oracle products can be found on Oracle Critical Patch Updates and Security Alerts page.

Comments:

The CVE does not mention Perl 5.8. Is the CVE not complete in its Perl version enumeration or am I missing somerthing?

Posted by guest on October 18, 2013 at 10:45 AM PDT #

We were not able to reproduce CVE-2012-5195 on Perl 5.8. So the patches were generated as a safety precaution by implementing the fix for CVE-2012-5195 on Perl 5.8.

Posted by Ritwik Ghoshal on October 21, 2013 at 11:28 AM PDT #

I was able to apply patches 148561-04 and 148561-5. When I tried to apply 148561-06 I recieved the error:

This appears to be an attempt to install the same architecture and
version of a package which is already installed. This installation
will attempt to overwrite this package.

/var/tmp/148561-06/SUNWperl584core/install/checkinstall: /var/tmp/148561-06/SUNW

perl584core/install/checkinstall: cannot open
pkgadd: ERROR: checkinstall script did not complete successfully

Dryrun complete.

Any thoughts?

Posted by guest on October 31, 2013 at 10:02 AM PDT #

Please use My Oracle Support at https://support.oracle.com/ for patch installation problems. You might want to copy the contents of /var/sadm/patch/148561-06/log in your ticket.

Posted by Ritwik Ghoshal on November 01, 2013 at 02:34 PM PDT #

Post a Comment:
Comments are closed for this entry.
About

This blog provides security vulnerability fix notifications relevant to third party software components distributed and supported as part of Oracle Products.
Summarized version of this blog is available as a mapping of CVEs and solutions.

Search

Archives
« July 2014
SunMonTueWedThuFriSat
  
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
  
       
Today