Advisories ยป MGASA-2023-0096

Updated perl-HTML-StripScripts packages fix security vulnerability

Publication date: 18 Mar 2023
Modification date: 18 Mar 2023
Type: security
Affected Mageia releases : 8
CVE: CVE-2023-24038

Description

The HTML-StripScripts module through 1.06 for Perl allows _hss_attval_style
ReDoS because of catastrophic backtracking for HTML content with certain
style attributes. (CVE-2023-24038)
                

References

SRPMS

8/core