Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
CVE-2023-31484
See a problem?
Please try reporting it
to the source
first.
Source
https://nvd.nist.gov/vuln/detail/CVE-2023-31484
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-31484.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2023-31484
Downstream
BELL-CVE-2023-31484
DEBIAN-CVE-2023-31484
DLA-3926-1
ECHO-0985-0297-4ba8
OESA-2023-1287
OESA-2023-1420
RHSA-2023:6539
RHSA-2024:3094
RLSA-2024:3094
SUSE-SU-2023:2881-1
SUSE-SU-2023:2882-1
SUSE-SU-2024:1630-1
UBUNTU-CVE-2023-31484
USN-6112-1
USN-6112-2
Related
ALSA-2023:6539
ALSA-2024:3094
RLSA-2023:6539
SUSE-SU-2023:2881-1
SUSE-SU-2023:2882-1
SUSE-SU-2024:1630-1
Published
2023-04-29T00:15:09Z
Modified
2025-10-18T11:09:36.106761Z
Severity
8.1 (High)
CVSS_V3 - CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS Calculator
Summary
[none]
Details
CPAN.pm before 2.35 does not verify TLS certificates when downloading distributions over HTTPS.
References
https://blog.hackeriet.no/perl-http-tiny-insecure-tls-default-affects-cpan-modules/
https://metacpan.org/dist/CPAN/changes
https://security.netapp.com/advisory/ntap-20240621-0007/
http://www.openwall.com/lists/oss-security/2023/04/29/1
http://www.openwall.com/lists/oss-security/2023/05/03/3
http://www.openwall.com/lists/oss-security/2023/05/03/5
http://www.openwall.com/lists/oss-security/2023/05/07/2
https://www.openwall.com/lists/oss-security/2023/04/18/14
https://github.com/andk/cpanpm/pull/175
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/BM6UW55CNFUTNGD5ZRKGUKKKFDJGMFHL/
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/LEGCEOKFJVBJ2QQ6S2H4NAEWTUERC7SB/
Affected packages
Git
/
github.com/perl/perl5
Affected ranges
Type
GIT
Repo
https://github.com/perl/perl5
Events
Introduced
0
Unknown introduced commit / All previous commits are affected
Fixed
76298ae68aa7796f0ffc05095b127d23f4b2de8f
Affected versions
Other
GitLive-blead
perl-5a2
perl-5a9
if-0.*
if-0.0602
if-0.0603
if-0.0604
if-0.0605
perl-1.*
perl-1.0
perl-2.*
perl-2.0
perl-3.*
perl-3.000
perl-3.044
perl-4.*
perl-4.0.00
perl-4.0.36
perl-5.*
perl-5.000
perl-5.000o
perl-5.001
perl-5.001n
perl-5.002
perl-5.002_01
perl-5.003
perl-5.003_01
perl-5.003_02
perl-5.003_03
perl-5.003_04
perl-5.003_05
perl-5.003_07
perl-5.003_08
perl-5.003_09
perl-5.003_10
perl-5.003_11
perl-5.003_12
perl-5.003_13
perl-5.003_14
perl-5.003_15
perl-5.003_16
perl-5.003_17
perl-5.003_18
perl-5.003_19
perl-5.003_20
perl-5.003_21
perl-5.003_22
perl-5.003_23
perl-5.003_24
perl-5.003_25
perl-5.003_26
perl-5.003_27
perl-5.003_28
perl-5.003_90
perl-5.003_91
perl-5.003_92
perl-5.003_93
perl-5.003_94
perl-5.003_95
perl-5.003_96
perl-5.003_97
perl-5.003_97a
perl-5.003_97b
perl-5.003_97c
perl-5.003_97d
perl-5.003_97e
perl-5.003_97f
perl-5.003_97g
perl-5.003_97h
perl-5.003_97i
perl-5.003_97j
perl-5.003_98
perl-5.003_99
perl-5.003_99a
perl-5.004
perl-5.004_01
perl-5.004_02
perl-5.004_03
perl-5.004_04
perl-5.005
perl-5.005_01
perl-5.005_02
perl-5.6.0
perl-5.7.0
perl-5.7.1
perl-5.7.2
perl-5.7.3
perl-5.8.0
perl-5.9.0
perl-5.9.1
perl-5.9.2
perl-5.9.3
perl-5.9.4
perl-5.9.5
v5.*
v5.10.0
v5.11.0
v5.11.1
v5.11.2
v5.11.3
v5.11.4
v5.11.5
v5.12.0
v5.12.0-RC0
v5.12.0-RC1
v5.12.0-RC2
v5.12.0-RC3
v5.12.0-RC4
v5.12.0-RC5
v5.13.0
v5.13.1
v5.13.10
v5.13.11
v5.13.2
v5.13.3
v5.13.4
v5.13.5
v5.13.6
v5.13.7
v5.13.8
v5.13.9
v5.14.0
v5.14.0-RC1
v5.14.0-RC2
v5.14.0-RC3
v5.15.0
v5.15.1
v5.15.2
v5.15.3
v5.15.4
v5.15.5
v5.15.6
v5.15.7
v5.15.8
v5.15.9
v5.16.0
v5.16.0-RC1
v5.16.0-RC2
v5.17.0
v5.17.1
v5.17.10
v5.17.11
v5.17.2
v5.17.3
v5.17.4
v5.17.5
v5.17.6
v5.17.7
v5.17.7.0
v5.17.8
v5.17.9
v5.18.0
v5.18.0-RC1
v5.18.0-RC2
v5.18.0-RC3
v5.18.0-RC4
v5.19.0
v5.19.1
v5.19.10
v5.19.11
v5.19.2
v5.19.3
v5.19.4
v5.19.5
v5.19.6
v5.19.7
v5.19.8
v5.19.9
v5.20.0
v5.20.0-RC1
v5.21.0
v5.21.1
v5.21.10
v5.21.11
v5.21.2
v5.21.3
v5.21.4
v5.21.5
v5.21.6
v5.21.7
v5.21.8
v5.21.9
v5.22.0
v5.22.0-RC1
v5.22.0-RC2
v5.23.0
v5.23.1
v5.23.2
v5.23.3
v5.23.4
v5.23.5
v5.23.6
v5.23.7
v5.23.8
v5.23.9
v5.24.0
v5.24.0-RC1
v5.24.0-RC2
v5.24.0-RC3
v5.24.0-RC4
v5.24.0-RC5
v5.25.0
v5.25.1
v5.25.10
v5.25.11
v5.25.12
v5.25.2
v5.25.3
v5.25.4
v5.25.5
v5.25.6
v5.25.7
v5.25.8
v5.25.9
v5.26.0
v5.26.0-RC1
v5.26.0-RC2
v5.27.0
v5.27.1
v5.27.10
v5.27.11
v5.27.2
v5.27.3
v5.27.4
v5.27.5
v5.27.6
v5.27.7
v5.27.8
v5.27.9
v5.28.0
v5.28.0-RC1
v5.28.0-RC2
v5.28.0-RC3
v5.28.0-RC4
v5.29.0
v5.29.1
v5.29.10
v5.29.2
v5.29.3
v5.29.4
v5.29.5
v5.29.6
v5.29.7
v5.29.8
v5.29.9
v5.30.0
v5.30.0-RC1
v5.30.0-RC2
v5.31.0
v5.31.1
v5.31.10
v5.31.11
v5.31.2
v5.31.3
v5.31.4
v5.31.5
v5.31.6
v5.31.7
v5.31.8
v5.31.9
v5.32.0
v5.32.0-RC0
v5.32.0-RC1
v5.33.0
v5.33.1
v5.33.2
v5.33.3
v5.33.4
v5.33.5
v5.33.6
v5.33.7
v5.33.8
v5.33.9
v5.34.0
v5.34.0-RC1
v5.34.0-RC2
v5.35.0
v5.35.1
v5.35.10
v5.35.11
v5.35.2
v5.35.3
v5.35.4
v5.35.5
v5.35.6
v5.35.7
v5.35.8
v5.35.9
v5.36.0
v5.36.0-RC1
v5.36.0-RC3
v5.37.0
v5.37.1
v5.37.10
v5.37.11
v5.37.2
v5.37.3
v5.37.4
v5.37.5
v5.37.6
v5.37.7
v5.37.8
v5.37.9
v5.38.0-RC1
v5.38.0-RC2
Git
/
github.com/perl/perl5
Affected ranges
Type
GIT
Repo
https://github.com/andk/cpanpm
Events
Introduced
0
Unknown introduced commit / All previous commits are affected
Fixed
b69df18c4e8d7a6764aac7ba86461f6754fc25e7
Affected versions
1.*
1.93_51
1.93_52
1.93_53
1.93_54
1.94
1.94_52
1.94_53
1.94_54
1.94_55
1.94_56
1.94_57
1.94_58
1.94_59
1.94_60
1.94_61
1.94_62
1.94_63
1.94_64
1.94_65
1.9600
1.97_51
1.9800
2.*
2.00
2.00-TRIAL
2.01-TRIAL
2.02-TRIAL
2.03-TRIAL
2.04-TRIAL
2.05
2.05-TRIAL
2.05-TRIAL2
2.06-TRIAL
2.07-TRIAL
2.08-TRIAL
2.09-TRIAL
2.10
2.10-TRIAL
2.12-TRIAL
2.13-TRIAL
2.14
2.14-TRIAL
2.15-TRIAL
2.16
2.16-TRIAL
2.16-TRIAL2
2.17-TRIAL
2.17-TRIAL2
2.18-TRIAL
2.20-TRIAL
2.21-TRIAL
2.22
2.22-TRIAL
2.23-TRIAL
2.24-TRIAL
2.25
2.25-TRIAL
2.26
2.27
2.27-TRIAL
2.27-TRIAL2
2.28
2.28-TRIAL
2.29
2.30-TRIAL
2.31-TRIAL
2.32-TRIAL
2.33
2.33-TRIAL
2.34
2.34-TRIAL
CVE-2023-31484 - OSV