First published: Fri Sep 13 2024(Updated: )
CPAN.pm before 2.35 does not verify TLS certificates when downloading distributions over HTTPS.
Affected Software | Affected Version | How to fix |
---|---|---|
F5 Traffix Systems Signaling Delivery Controller | =5.1.0 | 5.2.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The F5-K000141052 vulnerability is considered to be of high severity due to its potential impact on system security.
To fix F5-K000141052, upgrade to CPAN.pm version 2.35 or later, which verifies TLS certificates properly.
F5-K000141052 affects F5 Traffix Systems Signaling Delivery Controller versions 5.1.0 and lower.
If F5-K000141052 is not addressed, it may allow attackers to intercept and modify downloads due to the lack of TLS certificate verification.
Currently, there are no known workarounds for F5-K000141052 other than upgrading to the patched version.