Name | TEMP-0535946-7636B8 |
Description | libio-socket-ssl-perl: partial hostname matching vulnerability |
Source | Automatically generated temporary name. Not for external reference. |
Debian Bugs | 535946 |
Vulnerable and fixed packages
The table below lists information on source packages.
Source Package | Release | Version | Status |
---|
libio-socket-ssl-perl (PTS) | jessie | 2.002-2+deb8u3 | fixed |
| stretch | 2.044-1 | fixed |
| buster | 2.060-3 | fixed |
| bullseye | 2.069-1 | fixed |
| bookworm | 2.081-2 | fixed |
| sid, trixie | 2.089-1 | fixed |
The information below is based on the following data on fixed versions.
Notes
hostname validition is not implemented until 1.14, so etch
is in a way is not affected, but in another sense, it is
completely affected since no validation done at all