"perl-FCGI":"0.78" perl-FCGI-0.78-12.module+el8+1885+5e4e79a6

エラータID: AXSA:2025-10019:01

Release date: 
Monday, June 16, 2025 - 20:43
Subject: 
"perl-FCGI":"0.78" perl-FCGI-0.78-12.module+el8+1885+5e4e79a6
Affected Channels: 
Asianux Server 8 for x86_64
Severity: 
High
Description: 

The perl-FCGI package provides a Perl module for writing FastCGI applications.
FastCGI is a more efficient alternative to traditional CGI, as it keeps
application processes persistent across multiple requests. This module allows
Perl web applications to handle requests faster and with lower resource
overhead, making it suitable for high-traffic environments.

Security Fix(es):

* perl-fcgi: FCGI versions 0.44 through 0.82, for Perl, include a vulnerable
version of the FastCGI fcgi2 (aka fcgi) library (CVE-2025-40907)

For more details about the security issue(s), including the impact, a CVSS
score, acknowledgments, and other related information, refer to the CVE page(s)
listed in the References section.

CVE-2025-40907
FCGI versions 0.44 through 0.82, for Perl, include a vulnerable version of the
FastCGI fcgi2 (aka fcgi) library. The included FastCGI library is affected by
CVE-2025-23016, causing an integer overflow (and resultant heap-based buffer
overflow) via crafted nameLen or valueLen values in data to the IPC socket. This
occurs in ReadParams in fcgiapp.c.

Modularity name: "perl-FCGI"
Stream name: "0.78"

Solution: 

Update packages.

Additional Info: 

N/A

Download: 

SRPMS
  1. perl-FCGI-0.78-12.module+el8+1885+5e4e79a6.src.rpm
    MD5: e69a8b38bd9d817fe979fc3eac88e1c4
    SHA-256: e608ae3f8f87851c7839615168ca63186cbfeed917ac8c2a4d5619fbc4bc2854
    Size: 106.33 kB

Asianux Server 8 for x86_64
  1. perl-FCGI-0.78-12.module+el8+1885+5e4e79a6.x86_64.rpm
    MD5: aa4952be1a58f6715a3b069b62f4904b
    SHA-256: 61661903a84327f2172730ec1c833691b23b985566455324290aa590bd626376
    Size: 48.28 kB
  2. perl-FCGI-debugsource-0.78-12.module+el8+1885+5e4e79a6.x86_64.rpm
    MD5: d24e83f7ea52597a4e15c1e6a9b66d57
    SHA-256: 599a3d992979aebfe92f25bc6906590326189b8f0514f2e2f83f810cf04e029a
    Size: 43.54 kB