Security Advisory

CVE-2015-8607

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2016-01-13 15:00:00
Last updated 2024-08-06 08:20:43
Assigner mitre
State PUBLISHED

Description

The canonpath function in the File::Spec module in PathTools before 3.62, as used in Perl, does not properly preserve the taint attribute of data, which might allow context-dependent attackers to bypass the taint protection mechanism via a crafted string.