RLSA-2024:10219

Source
https://errata.rockylinux.org/RLSA-2024:10219
Import Source
https://storage.googleapis.com/resf-osv-data/RLSA-2024:10219.json
JSON Data
https://api.osv.dev/v1/vulns/RLSA-2024:10219
Upstream
Published
2024-12-19T04:18:05.672002Z
Modified
2025-10-09T05:47:38.508244Z
Severity
  • 8.1 (High) CVSS_V3 - CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
Moderate: perl-App-cpanminus:1.7044 security update
Details

The panminus is a script to get, unpack, build and install modules from CPAN.

Security Fix(es):

  • perl-App-cpanminus: Insecure HTTP in App::cpanminus Allows Code Execution Vulnerability (CVE-2024-45321)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

References
Credits
    • Rocky Enterprise Software Foundation
    • Red Hat

Affected packages

Rocky Linux:8

perl-App-cpanminus

Package

Name
perl-App-cpanminus
Purl
pkg:rpm/rocky-linux/perl-App-cpanminus?distro=rocky-linux-8-x86-64&epoch=0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:1.7044-6.module+el8.10.0+1886+1635aa55

perl-App-cpanminus

Package

Name
perl-App-cpanminus
Purl
pkg:rpm/rocky-linux/perl-App-cpanminus?distro=rocky-linux-8-x86-64&epoch=0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:1.7044-6.module+el8.10.0+1886+c31d99b8

perl-App-cpanminus

Package

Name
perl-App-cpanminus
Purl
pkg:rpm/rocky-linux/perl-App-cpanminus?distro=rocky-linux-8-x86-64&epoch=0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:1.7044-6.module+el8.10.0+1886+1e729698

perl-App-cpanminus

Package

Name
perl-App-cpanminus
Purl
pkg:rpm/rocky-linux/perl-App-cpanminus?distro=rocky-linux-8-x86-64&epoch=0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:1.7044-6.module+el8.10.0+1886+95a09097

perl-CPAN-DistnameInfo

Package

Name
perl-CPAN-DistnameInfo
Purl
pkg:rpm/rocky-linux/perl-CPAN-DistnameInfo?distro=rocky-linux-8-x86-64&epoch=0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:0.12-13.module+el8.10.0+1616+0d20cc68

perl-CPAN-DistnameInfo

Package

Name
perl-CPAN-DistnameInfo
Purl
pkg:rpm/rocky-linux/perl-CPAN-DistnameInfo?distro=rocky-linux-8-x86-64&epoch=0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:0.12-13.module+el8.10.0+1890+1072d5cf

perl-CPAN-DistnameInfo

Package

Name
perl-CPAN-DistnameInfo
Purl
pkg:rpm/rocky-linux/perl-CPAN-DistnameInfo?distro=rocky-linux-8-x86-64&epoch=0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:0.12-13.module+el8.10.0+1890+281b551b

perl-CPAN-DistnameInfo

Package

Name
perl-CPAN-DistnameInfo
Purl
pkg:rpm/rocky-linux/perl-CPAN-DistnameInfo?distro=rocky-linux-8-x86-64&epoch=0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:0.12-13.module+el8.10.0+1890+318cbfb5

perl-CPAN-DistnameInfo

Package

Name
perl-CPAN-DistnameInfo
Purl
pkg:rpm/rocky-linux/perl-CPAN-DistnameInfo?distro=rocky-linux-8-x86-64&epoch=0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:0.12-13.module+el8.6.0+878+f93dfff7

perl-CPAN-DistnameInfo

Package

Name
perl-CPAN-DistnameInfo
Purl
pkg:rpm/rocky-linux/perl-CPAN-DistnameInfo?distro=rocky-linux-8-x86-64&epoch=0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:0.12-13.module+el8.9.0+1491+219f8fe7

perl-CPAN-DistnameInfo

Package

Name
perl-CPAN-DistnameInfo
Purl
pkg:rpm/rocky-linux/perl-CPAN-DistnameInfo?distro=rocky-linux-8-x86-64&epoch=0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:0.12-13.module+el8.9.0+1491+3507a112

perl-CPAN-DistnameInfo

Package

Name
perl-CPAN-DistnameInfo
Purl
pkg:rpm/rocky-linux/perl-CPAN-DistnameInfo?distro=rocky-linux-8-x86-64&epoch=0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:0.12-13.module+el8.9.0+1491+a1bcd037

perl-CPAN-Meta-Check

Package

Name
perl-CPAN-Meta-Check
Purl
pkg:rpm/rocky-linux/perl-CPAN-Meta-Check?distro=rocky-linux-8-x86-64&epoch=0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:0.014-6.module+el8.10.0+1890+1072d5cf

perl-CPAN-Meta-Check

Package

Name
perl-CPAN-Meta-Check
Purl
pkg:rpm/rocky-linux/perl-CPAN-Meta-Check?distro=rocky-linux-8-x86-64&epoch=0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:0.014-6.module+el8.10.0+1890+318cbfb5

perl-CPAN-Meta-Check

Package

Name
perl-CPAN-Meta-Check
Purl
pkg:rpm/rocky-linux/perl-CPAN-Meta-Check?distro=rocky-linux-8-x86-64&epoch=0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:0.014-6.module+el8.10.0+1890+372c0e22

perl-CPAN-Meta-Check

Package

Name
perl-CPAN-Meta-Check
Purl
pkg:rpm/rocky-linux/perl-CPAN-Meta-Check?distro=rocky-linux-8-x86-64&epoch=0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:0.014-6.module+el8.9.0+1491+19eb7ac4

perl-CPAN-Meta-Check

Package

Name
perl-CPAN-Meta-Check
Purl
pkg:rpm/rocky-linux/perl-CPAN-Meta-Check?distro=rocky-linux-8-x86-64&epoch=0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:0.014-6.module+el8.9.0+1491+219f8fe7

perl-CPAN-Meta-Check

Package

Name
perl-CPAN-Meta-Check
Purl
pkg:rpm/rocky-linux/perl-CPAN-Meta-Check?distro=rocky-linux-8-x86-64&epoch=0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:0.014-6.module+el8.9.0+1491+3507a112

perl-CPAN-Meta-Check

Package

Name
perl-CPAN-Meta-Check
Purl
pkg:rpm/rocky-linux/perl-CPAN-Meta-Check?distro=rocky-linux-8-x86-64&epoch=0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:0.014-6.module+el8.9.0+1491+a1bcd037

perl-CPAN-Meta-Check

Package

Name
perl-CPAN-Meta-Check
Purl
pkg:rpm/rocky-linux/perl-CPAN-Meta-Check?distro=rocky-linux-8-x86-64&epoch=0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:0.014-6.module+el8.10.0+1890+281b551b

perl-File-pushd

Package

Name
perl-File-pushd
Purl
pkg:rpm/rocky-linux/perl-File-pushd?distro=rocky-linux-8-x86-64&epoch=0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:1.014-6.module+el8.10.0+1890+1072d5cf

perl-File-pushd

Package

Name
perl-File-pushd
Purl
pkg:rpm/rocky-linux/perl-File-pushd?distro=rocky-linux-8-x86-64&epoch=0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:1.014-6.module+el8.9.0+1491+219f8fe7

perl-File-pushd

Package

Name
perl-File-pushd
Purl
pkg:rpm/rocky-linux/perl-File-pushd?distro=rocky-linux-8-x86-64&epoch=0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:1.014-6.module+el8.9.0+1491+3507a112

perl-File-pushd

Package

Name
perl-File-pushd
Purl
pkg:rpm/rocky-linux/perl-File-pushd?distro=rocky-linux-8-x86-64&epoch=0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:1.014-6.module+el8.10.0+1890+281b551b

perl-File-pushd

Package

Name
perl-File-pushd
Purl
pkg:rpm/rocky-linux/perl-File-pushd?distro=rocky-linux-8-x86-64&epoch=0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:1.014-6.module+el8.9.0+1491+a1bcd037

perl-File-pushd

Package

Name
perl-File-pushd
Purl
pkg:rpm/rocky-linux/perl-File-pushd?distro=rocky-linux-8-x86-64&epoch=0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:1.014-6.module+el8.10.0+1890+318cbfb5

perl-File-pushd

Package

Name
perl-File-pushd
Purl
pkg:rpm/rocky-linux/perl-File-pushd?distro=rocky-linux-8-x86-64&epoch=0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:1.014-6.module+el8.10.0+1890+372c0e22

perl-File-pushd

Package

Name
perl-File-pushd
Purl
pkg:rpm/rocky-linux/perl-File-pushd?distro=rocky-linux-8-x86-64&epoch=0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:1.014-6.module+el8.9.0+1491+19eb7ac4

perl-Module-CPANfile

Package

Name
perl-Module-CPANfile
Purl
pkg:rpm/rocky-linux/perl-Module-CPANfile?distro=rocky-linux-8-x86-64&epoch=0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:1.1002-7.module+el8.10.0+1890+1072d5cf

perl-Module-CPANfile

Package

Name
perl-Module-CPANfile
Purl
pkg:rpm/rocky-linux/perl-Module-CPANfile?distro=rocky-linux-8-x86-64&epoch=0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:1.1002-7.module+el8.9.0+1491+219f8fe7

perl-Module-CPANfile

Package

Name
perl-Module-CPANfile
Purl
pkg:rpm/rocky-linux/perl-Module-CPANfile?distro=rocky-linux-8-x86-64&epoch=0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:1.1002-7.module+el8.10.0+1890+281b551b

perl-Module-CPANfile

Package

Name
perl-Module-CPANfile
Purl
pkg:rpm/rocky-linux/perl-Module-CPANfile?distro=rocky-linux-8-x86-64&epoch=0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:1.1002-7.module+el8.9.0+1491+3507a112

perl-Module-CPANfile

Package

Name
perl-Module-CPANfile
Purl
pkg:rpm/rocky-linux/perl-Module-CPANfile?distro=rocky-linux-8-x86-64&epoch=0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:1.1002-7.module+el8.9.0+1491+a1bcd037

perl-Module-CPANfile

Package

Name
perl-Module-CPANfile
Purl
pkg:rpm/rocky-linux/perl-Module-CPANfile?distro=rocky-linux-8-x86-64&epoch=0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:1.1002-7.module+el8.10.0+1890+318cbfb5

perl-Module-CPANfile

Package

Name
perl-Module-CPANfile
Purl
pkg:rpm/rocky-linux/perl-Module-CPANfile?distro=rocky-linux-8-x86-64&epoch=0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:1.1002-7.module+el8.10.0+1890+372c0e22

perl-Module-CPANfile

Package

Name
perl-Module-CPANfile
Purl
pkg:rpm/rocky-linux/perl-Module-CPANfile?distro=rocky-linux-8-x86-64&epoch=0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:1.1002-7.module+el8.9.0+1491+19eb7ac4

perl-Parse-PMFile

Package

Name
perl-Parse-PMFile
Purl
pkg:rpm/rocky-linux/perl-Parse-PMFile?distro=rocky-linux-8-x86-64&epoch=0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:0.41-7.module+el8.10.0+1890+1072d5cf

perl-Parse-PMFile

Package

Name
perl-Parse-PMFile
Purl
pkg:rpm/rocky-linux/perl-Parse-PMFile?distro=rocky-linux-8-x86-64&epoch=0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:0.41-7.module+el8.9.0+1491+19eb7ac4

perl-Parse-PMFile

Package

Name
perl-Parse-PMFile
Purl
pkg:rpm/rocky-linux/perl-Parse-PMFile?distro=rocky-linux-8-x86-64&epoch=0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:0.41-7.module+el8.9.0+1491+219f8fe7

perl-Parse-PMFile

Package

Name
perl-Parse-PMFile
Purl
pkg:rpm/rocky-linux/perl-Parse-PMFile?distro=rocky-linux-8-x86-64&epoch=0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:0.41-7.module+el8.9.0+1491+3507a112

perl-Parse-PMFile

Package

Name
perl-Parse-PMFile
Purl
pkg:rpm/rocky-linux/perl-Parse-PMFile?distro=rocky-linux-8-x86-64&epoch=0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:0.41-7.module+el8.9.0+1491+a1bcd037

perl-Parse-PMFile

Package

Name
perl-Parse-PMFile
Purl
pkg:rpm/rocky-linux/perl-Parse-PMFile?distro=rocky-linux-8-x86-64&epoch=0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:0.41-7.module+el8.10.0+1890+281b551b

perl-Parse-PMFile

Package

Name
perl-Parse-PMFile
Purl
pkg:rpm/rocky-linux/perl-Parse-PMFile?distro=rocky-linux-8-x86-64&epoch=0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:0.41-7.module+el8.10.0+1890+318cbfb5

perl-Parse-PMFile

Package

Name
perl-Parse-PMFile
Purl
pkg:rpm/rocky-linux/perl-Parse-PMFile?distro=rocky-linux-8-x86-64&epoch=0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:0.41-7.module+el8.10.0+1890+372c0e22

perl-String-ShellQuote

Package

Name
perl-String-ShellQuote
Purl
pkg:rpm/rocky-linux/perl-String-ShellQuote?distro=rocky-linux-8-x86-64&epoch=0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:1.04-24.module+el8.10.0+1890+1072d5cf

perl-String-ShellQuote

Package

Name
perl-String-ShellQuote
Purl
pkg:rpm/rocky-linux/perl-String-ShellQuote?distro=rocky-linux-8-x86-64&epoch=0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:1.04-24.module+el8.10.0+1890+281b551b

perl-String-ShellQuote

Package

Name
perl-String-ShellQuote
Purl
pkg:rpm/rocky-linux/perl-String-ShellQuote?distro=rocky-linux-8-x86-64&epoch=0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:1.04-24.module+el8.10.0+1890+318cbfb5

perl-String-ShellQuote

Package

Name
perl-String-ShellQuote
Purl
pkg:rpm/rocky-linux/perl-String-ShellQuote?distro=rocky-linux-8-x86-64&epoch=0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:1.04-24.module+el8.10.0+1890+372c0e22

perl-String-ShellQuote

Package

Name
perl-String-ShellQuote
Purl
pkg:rpm/rocky-linux/perl-String-ShellQuote?distro=rocky-linux-8-x86-64&epoch=0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:1.04-24.module+el8.9.0+1491+19eb7ac4

perl-String-ShellQuote

Package

Name
perl-String-ShellQuote
Purl
pkg:rpm/rocky-linux/perl-String-ShellQuote?distro=rocky-linux-8-x86-64&epoch=0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:1.04-24.module+el8.9.0+1491+219f8fe7

perl-String-ShellQuote

Package

Name
perl-String-ShellQuote
Purl
pkg:rpm/rocky-linux/perl-String-ShellQuote?distro=rocky-linux-8-x86-64&epoch=0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:1.04-24.module+el8.9.0+1491+3507a112

perl-String-ShellQuote

Package

Name
perl-String-ShellQuote
Purl
pkg:rpm/rocky-linux/perl-String-ShellQuote?distro=rocky-linux-8-x86-64&epoch=0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:1.04-24.module+el8.9.0+1491+a1bcd037