Skip to content
This repository has been archived by the owner on Mar 16, 2022. It is now read-only.

1.168.0

Compare
Choose a tag to compare
@cf-buildpacks-eng cf-buildpacks-eng released this 13 Nov 15:22
· 123 commits to master since this release

Notably, this release addresses:

USN-3478-1 Ubuntu Security Notice USN-3478-1:

  • CVE-2017-12837: Heap-based buffer overflow in the S_regatom function in regcomp.c in Perl 5 before 5.24.3-RC1 and 5.26.x before 5.26.1-RC1 allows remote attackers to cause a denial of service (out-of-bounds write) via a regular expression with a '\N{}' escape and the case-insensitive modifier.
  • CVE-2017-12883: Buffer overflow in the S_grok_bslash_N function in regcomp.c in Perl 5 before 5.24.3-RC1 and 5.26.x before 5.26.1-RC1 allows remote attackers to disclose sensitive information or cause a denial of service (application crash) via a crafted regular expression with an invalid '\N{U+...}' escape.
-ii  perl         5.18.2-2ubuntu1.1  amd64 Larry Wall's Practical Extraction and Report Language
-ii  perl-base    5.18.2-2ubuntu1.1  amd64 minimal Perl system
-ii  perl-modules 5.18.2-2ubuntu1.1  all   Core Perl modules
+ii  perl         5.18.2-2ubuntu1.3  amd64 Larry Wall's Practical Extraction and Report Language
+ii  perl-base    5.18.2-2ubuntu1.3  amd64 minimal Perl system
+ii  perl-modules 5.18.2-2ubuntu1.3  all   Core Perl modules