ALAS-2022-1566

Related Vulnerabilities: CVE-2022-23935  

lib/Image/ExifTool.pm in ExifTool before 12.38 mishandles a $file =~ /\|$/ check. (CVE-2022-23935)

ALAS-2022-1566


Amazon Linux AMI Security Advisory: ALAS-2022-1566
Advisory Release Date: 2022-02-17 18:30 Pacific
Advisory Updated Date: 2022-02-18 22:52 Pacific
Severity: Critical
References: CVE-2022-23935 

Issue Overview:

lib/Image/ExifTool.pm in ExifTool before 12.38 mishandles a $file =~ /\|$/ check. (CVE-2022-23935)


Affected Packages:

perl-Image-ExifTool


Issue Correction:
Run yum update perl-Image-ExifTool to update your system.

New Packages:
noarch:
    perl-Image-ExifTool-12.38-1.3.amzn1.noarch

src:
    perl-Image-ExifTool-12.38-1.3.amzn1.src