2017-10-16 12:31:07 -04:00
{
2019-03-18 04:24:18 +00:00
"CVE_data_meta" : {
"ASSIGNER" : "secalert@redhat.com" ,
"ID" : "CVE-2012-1152" ,
"STATE" : "PUBLIC"
} ,
"affects" : {
"vendor" : {
"vendor_data" : [
{
"product" : {
"product_data" : [
{
"product_name" : "n/a" ,
"version" : {
"version_data" : [
{
"version_value" : "n/a"
}
]
}
}
]
} ,
"vendor_name" : "n/a"
}
2017-10-16 12:31:07 -04:00
]
2019-03-18 04:24:18 +00:00
}
} ,
"data_format" : "MITRE" ,
"data_type" : "CVE" ,
"data_version" : "4.0" ,
"description" : {
"description_data" : [
{
"lang" : "eng" ,
"value" : "Multiple format string vulnerabilities in the error reporting functionality in the YAML::LibYAML (aka YAML-LibYAML and perl-YAML-LibYAML) module 0.38 for Perl allow remote attackers to cause a denial of service (process crash) via format string specifiers in a (1) YAML stream to the Load function, (2) YAML node to the load_node function, (3) YAML mapping to the load_mapping function, or (4) YAML sequence to the load_sequence function."
}
]
} ,
"problemtype" : {
"problemtype_data" : [
{
"description" : [
{
"lang" : "eng" ,
"value" : "n/a"
}
]
}
]
} ,
"references" : {
"reference_data" : [
{
"name" : "[oss-security] 20120309 Re: CVE Request -- libdbd-pg-perl / perl-DBD-Pg && libyaml-libyaml-perl / perl-YAML-LibYAML: Multiple format string flaws" ,
"refsource" : "MLIST" ,
"url" : "http://www.openwall.com/lists/oss-security/2012/03/10/4"
} ,
{
"name" : "openSUSE-SU-2012:1000" ,
"refsource" : "SUSE" ,
"url" : "http://lists.opensuse.org/opensuse-updates/2012-08/msg00029.html"
} ,
{
"name" : "FEDORA-2012-4997" ,
"refsource" : "FEDORA" ,
"url" : "http://lists.fedoraproject.org/pipermail/package-announce/2012-April/077004.html"
} ,
{
"name" : "48317" ,
"refsource" : "SECUNIA" ,
"url" : "http://secunia.com/advisories/48317"
} ,
{
"name" : "FEDORA-2012-5035" ,
"refsource" : "FEDORA" ,
"url" : "http://lists.fedoraproject.org/pipermail/package-announce/2012-April/077023.html"
} ,
{
"name" : "http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=661548" ,
"refsource" : "MISC" ,
"url" : "http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=661548"
} ,
{
"name" : "openSUSE-SU-2015:0319" ,
"refsource" : "SUSE" ,
"url" : "http://lists.opensuse.org/opensuse-updates/2015-02/msg00078.html"
} ,
{
"name" : "52381" ,
"refsource" : "BID" ,
"url" : "http://www.securityfocus.com/bid/52381"
} ,
{
"name" : "yaml-load-format-string(73856)" ,
"refsource" : "XF" ,
"url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/73856"
} ,
{
"name" : "50277" ,
"refsource" : "SECUNIA" ,
"url" : "http://secunia.com/advisories/50277"
} ,
{
"name" : "[oss-security] 20120309 CVE Request -- libdbd-pg-perl / perl-DBD-Pg && libyaml-libyaml-perl / perl-YAML-LibYAML: Multiple format string flaws" ,
"refsource" : "MLIST" ,
"url" : "http://www.openwall.com/lists/oss-security/2012/03/09/6"
} ,
{
"name" : "FEDORA-2012-4871" ,
"refsource" : "FEDORA" ,
"url" : "http://lists.fedoraproject.org/pipermail/package-announce/2012-April/077782.html"
} ,
{
"name" : "https://rt.cpan.org/Public/Bug/Display.html?id=75365" ,
"refsource" : "MISC" ,
"url" : "https://rt.cpan.org/Public/Bug/Display.html?id=75365"
} ,
{
"name" : "https://rt.cpan.org/Public/Bug/Display.html?id=46507" ,
"refsource" : "MISC" ,
"url" : "https://rt.cpan.org/Public/Bug/Display.html?id=46507"
} ,
{
"name" : "DSA-2432" ,
"refsource" : "DEBIAN" ,
"url" : "http://www.debian.org/security/2012/dsa-2432"
} ,
{
"name" : "https://bugzilla.redhat.com/show_bug.cgi?id=801738" ,
"refsource" : "MISC" ,
"url" : "https://bugzilla.redhat.com/show_bug.cgi?id=801738"
}
]
}
}