Summary
The remote host is missing an update to perl-Crypt-OpenSSL-DSA announced via advisory FEDORA-2009-1914.
Solution
Apply the appropriate updates.
This update can be installed with the yum update program. Use su -c 'yum update perl-Crypt-OpenSSL-DSA' at the command line.
For more information, refer to Managing Software with yum, available at http://docs.fedoraproject.org/yum/.
https://secure1.securityspace.com/smysecure/catid.html?in=FEDORA-2009-1914
Insight
Crypt::OpenSSL::DSA - Digital Signature Algorithm using OpenSSL
Update Information:
Fixes CVE-2009-0129: The Crypto::OpenSSL::DSA module now croaks upon error rather than returning a -1 to ensure programmers are not caught by surprise which only checking for non-zero results.
ChangeLog:
* Wed Feb 18 2009 Wes Hardaker - 0.13-9
- Version bump to solve build issues
* Wed Feb 18 2009 Wes Hardaker - 0.13-8
- Fix CVE-2009-0129 and have do_verify croak on fatal error
References
Updated on 2015-03-25
Severity
Classification
-
CVE CVE-2009-0129 -
CVSS Base Score: 5.0
AV:N/AC:L/Au:N/C:P/I:N/A:N
Related Vulnerabilities