Debian: 2801-1: libhttp-body-perl: design error
Nov23
on November 23, 2013
at 8:00 am
Posted In: Uncategorized
(Nov 21) Jonathan Dolle reported a design error in HTTP::Body, a Perl module for processing data from HTTP POST requests. The HTTP body multipart parser creates temporary files which preserve the suffix of the uploaded file. An attacker able to upload files to a service that uses [More…]
Comment