First published: Wed Jun 13 2018(Updated: )
It was discovered that Perl incorrectly handled certain archive files. An attacker could possibly use this to overwrite arbitrary files.
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
ubuntu/perl | <5.26.1-6ubuntu0.1 | 5.26.1-6ubuntu0.1 |
=18.04 | ||
All of | ||
ubuntu/perl | <5.26.0-8ubuntu1.2 | 5.26.0-8ubuntu1.2 |
=17.10 | ||
All of | ||
ubuntu/perl | <5.22.1-9ubuntu0.5 | 5.22.1-9ubuntu0.5 |
=16.04 | ||
All of | ||
ubuntu/perl | <5.18.2-2ubuntu1.6 | 5.18.2-2ubuntu1.6 |
=14.04 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for the Perl vulnerability is USN-3684-1.
The severity of the Perl vulnerability is not mentioned in the description.
The Perl vulnerability allows attackers to overwrite arbitrary files on affected systems.
To fix the Perl vulnerability, update the Perl package to version 5.26.1-6ubuntu0.1 or higher.
You can find more information about the Perl vulnerability at the following references: [CVE-2018-12015](https://ubuntu.com/security/CVE-2018-12015), [USN-3684-2](https://ubuntu.com/security/notices/USN-3684-2), [Perl source](https://launchpad.net/ubuntu/+source/perl/5.26.1-6ubuntu0.1).