REDHAT-BUG-2369630
Published Jun 1, 2025
·Updated
YAML-LibYAML prior to 0.903.0 for Perl uses 2-args open, allowing existing files to be modified
Affected Software
1 affected component
YAML LibYAML<0.903.0
Event History
Jun 1, 2025
Data Sourced
via Red Hat·02:01 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of REDHAT-BUG-2369630?
The severity of REDHAT-BUG-2369630 is considered to be high due to the risk of existing files being modified.
2
How do I fix REDHAT-BUG-2369630?
To fix REDHAT-BUG-2369630, upgrade YAML-LibYAML to version 0.903.0 or later.
3
Which versions are affected by REDHAT-BUG-2369630?
YAML-LibYAML versions prior to 0.903.0 are affected by REDHAT-BUG-2369630.
4
What vulnerabilities are associated with REDHAT-BUG-2369630?
REDHAT-BUG-2369630 is associated with file modification vulnerabilities due to improper use of 2-args open.
5
Are there any workarounds for REDHAT-BUG-2369630?
There are no known workarounds for REDHAT-BUG-2369630; the recommended action is to upgrade.