The advisory, republished on the oss-sec feed on 5 October 2026 and identified as CVE-2019-25777, concerns the YAML module for Perl. According to the text, versions before 1.27_001 are affected when they load perl/glob documents, which can overwrite package variables and allow arbitrary code execution. The material identifies the YAML distribution and the affected versions, and cites MetaCPAN and the project repository as references. To verify, consult the original oss-sec advisory and the CPAN pages it links, confirm the installed module version, and compare it with the fixed version stated. The received text is an automatic translation, so prefer the original English wording when making decisions. This entry is informational only and does not describe any Rota Nacional capability regarding this vulnerability.
Cyber ·
CVE-2019-25777: YAML for Perl before 1.27_001 may allow arbitrary code execution
CPAN Security Group advisory on the YAML module for Perl: perl/glob documents loaded in versions before 1.27_001 can overwrite package variables and lead to arbitrary code execution.
Rota Nacional
Bring privacy into your workflow.
30 days, no card, with a starting quota. After that, Pix credit from R$ 10,00.