The Safe (aka Safe.pm) module 2.26, and certain earlier versions, for Perl, as used in PostgreSQL 7.4 before 7.4.29, 8.0 before 8.0.25, 8.1 before 8.1.21, 8.2 before 8.2.17, 8.3 before 8.3.11, 8.4 before 8.4.4, and 9.0 Beta before 9.0 Beta 2, allows context-dependent attackers to bypass intended (1) Safe::reval and (2) Safe::rdo access restrictions, and inject and execute arbitrary code, via vectors involving subroutine references and delayed execution.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: redhat
Published: 2010-05-19T18:13:00
Updated: 2024-08-07T01:21:19.216Z
Reserved: 2010-04-15T00:00:00
Link: CVE-2010-1447
Vulnrichment
No data.
NVD
Status : Modified
Published: 2010-05-19T18:30:03.457
Modified: 2024-11-21T01:14:26.747
Link: CVE-2010-1447
Redhat