Product:

Module\-Signature

(Module\-Signature_project)
Repositories https://github.com/audreyt/module-signature
#Vulnerabilities 4
Date Id Summary Products Score Patch Annotated
2019-11-29 CVE-2015-3406 The PGP signature parsing in Module::Signature before 0.74 allows remote attackers to cause the unsigned portion of a SIGNATURE file to be treated as the signed portion via unspecified vectors. Ubuntu_linux, Module\-Signature N/A
2015-05-19 CVE-2015-3409 Untrusted search path vulnerability in Module::Signature before 0.75 allows local users to gain privileges via a Trojan horse module under the current working directory, as demonstrated by a Trojan horse Text::Diff module. Ubuntu_linux, Module\-Signature N/A
2015-05-19 CVE-2015-3408 Module::Signature before 0.74 allows remote attackers to execute arbitrary shell commands via a crafted SIGNATURE file which is not properly handled when generating checksums from a signed manifest. Ubuntu_linux, Module\-Signature N/A
2015-05-19 CVE-2015-3407 Module::Signature before 0.74 allows remote attackers to bypass signature verification for files via a signature file that does not list the files. Ubuntu_linux, Module\-Signature N/A