PT-2016-7920 · Perl Foundation · Perl

Published

2016-10-25

·

Updated

2016-10-25

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions POS Image3 versions prior to 3.5.5 POS Server3 versions prior to 3.5.5
Description The issue concerns potential security problems that have been fixed in the updates. These fixes include consistently using the three-argument Perl open function, utilizing arrays in Perl system calls, preferring Perl built-in functions over external shell commands, enhancing validation of uploaded files, and improving the runcmd code for external command calls. No information is provided about the estimated number of potentially affected devices or real-world incidents where this issue was exploited.
Recommendations For POS Image3 versions prior to 3.5.5, update to version 3.5.5 to resolve the issue. For POS Server3 versions prior to 3.5.5, update to version 3.5.5 to resolve the issue.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

SUSE-SU-2016:2627-1

Affected Products

Perl