stable

perl-CPAN-2.36-1.fc38

FEDORA-2023-46924e402a created by jplesnik 6 months ago for Fedora 38

Security fix for CVE-2023-31484

CPAN.pm before 2.35 does not verify TLS certificates when downloading distributions over HTTPS. CPAN 2.35 - Add verify_SSL=>1 to HTTP::Tiny to verify https server identity

How to install

Updates may require up to 24 hours to propagate to mirrors. If the following command doesn't work, please retry later:

sudo dnf upgrade --refresh --advisory=FEDORA-2023-46924e402a

This update has been submitted for testing by jplesnik.

6 months ago

This update's test gating status has been changed to 'ignored'.

6 months ago

mspacek edited this update.

6 months ago
User Icon mspacek provided feedback 6 months ago
karma
BZ#2218667 CVE-2023-31484 perl: CPAN.pm before 2.35 does not verify TLS certificates when downloading distributions over HTTPS
BZ#2218904 TRIAGE-CVE-2023-31484 perl: CPAN.pm before 2.35 does not verify TLS certificates when downloading distributions over HTTPS [fedora-all]

This update's test gating status has been changed to 'failed'.

5 months ago

This update has been pushed to testing.

5 months ago

This update's test gating status has been changed to 'passed'.

5 months ago
User Icon besser82 commented & provided feedback 5 months ago
karma

Works great! LGTM! =)

This update can be pushed to stable now if the maintainer wishes

5 months ago

This update has been submitted for stable by bodhi.

5 months ago

This update has been pushed to stable.

5 months ago

Please login to add feedback.

Metadata
Type
security
Severity
high
Karma
2
Signed
Content Type
RPM
Test Gating
Settings
Unstable by Karma
-3
Stable by Karma
3
Stable by Time
7 days
Dates
submitted
6 months ago
in testing
5 months ago
in stable
5 months ago
modified
6 months ago
approved
5 months ago
BZ#2218667 CVE-2023-31484 perl: CPAN.pm before 2.35 does not verify TLS certificates when downloading distributions over HTTPS
0
1
BZ#2218904 TRIAGE-CVE-2023-31484 perl: CPAN.pm before 2.35 does not verify TLS certificates when downloading distributions over HTTPS [fedora-all]
0
1

Automated Test Results