Skip to content

Commit

Permalink
Crypt::Prime's largeprimes location adds to @inc in its shebang (#183)
Browse files Browse the repository at this point in the history
  • Loading branch information
briandfoy committed Dec 30, 2024
1 parent 541e288 commit 1875341
Showing 1 changed file with 20 additions and 0 deletions.
20 changes: 20 additions & 0 deletions cpansa/CPANSA-Crypt-Primes.yml
Original file line number Diff line number Diff line change
@@ -0,0 +1,20 @@
---
advisories:
- affected_versions:
- '>0'
cves: []
description: |
bin/largeprimes uses a custom shebang, which allows it to load modules from several locations: '..', '../lib', 'lib'. This could lead to load modules from an unpredictable location depending from where the script is run and what user is running it.
fixed_versions: []
github_security_advisory: []
id: CPANSA-Crypt-Primes-2024-001
references:
- https://rt.cpan.org/Public/Bug/Display.html?id=128058
- https://github.com/atoomic/Crypt-Primes/pull/2
reported: ~
severity: ~
cpansa_version: 2
distribution: Crypt-Primes
last_checked: 1735586743
latest_version: 0.50
metacpan: https://metacpan.org/pod/Crypt::Primes

0 comments on commit 1875341

Please sign in to comment.