Wind River Support Network

HomeDefectsLIN1022-4169
Fixed

LIN1022-4169 : Security Advisory - perl - CVE-2023-31486

Created: May 4, 2023    Updated: Jun 8, 2023
Resolved Date: Jun 7, 2023
Found In Version: 10.22.33.1
Fix Version: 10.22.33.9(hot fix)
Severity: Standard
Applicable for: Wind River Linux LTS 22
Component/s: Userspace

Description

HTTP::Tiny 0.082, a Perl core module since 5.13.9 and available standalone on CPAN, has an insecure default TLS configuration where users must opt in to verify certificates.

CREATE(Triage):(User=admin) CVE-2023-31486 (https://nvd.nist.gov/vuln/detail/CVE-2023-31486)

CVEs


Live chat
Online