perl-Image-Info: information disclosure
Package(s): | perl-Image-Info | CVE #(s): | CVE-2016-9181 | ||||||||
Created: | October 26, 2016 | Updated: | November 4, 2016 | ||||||||
Description: | From the Red Hat bugzilla:
The Image::Info package makes no precautions against external entity expansion in SVG files. A crafted file could cause information disclosure or denial of service. See also the CVE assignment email. | ||||||||||
Alerts: |
|