Get the latest tech news

Perl's CPAN Security Group is Now a CNA, Can Assign CVEs


Active since 1995, the Comprehensive Perl Archive Network (or CPAN) hosts 221,742 Perl modules written by 14,548 authors. This week they announced that the CPAN Security Group "was authorized by the CVE Program as a CVE Numbering Authority (CNA)" to assign and manage CVE vulnerability identificatio...

And Curl creator Daniel Stenberg posted"I'm with Greg Kroah-Hartman on this: all Open Source projects should become CNAs. (Also posting "Agreed" to the suggestion was Seth Larson, the Python Software Foundation's security developer-in-residence involved in their successful effort to become a CNA in 2023.) The announcement from PerlMonks.org: Years ago, a few people decided during the Perl Toolchain Summit (PTS) that it would be a good idea to join forces, ideas and knowledge and start a group to monitor vulnerabilities in the complete Perl ecosystem from core to the smallest CPAN release.

Get the Android app

Or read this on Slashdot

Read more on:

Photo of cna

cna

Photo of CVEs

CVEs

Photo of Perl

Perl

Related news:

News photo

Enhancing your MIDI devices with Perl

News photo

Perl Weekly Issue #704 – Perl Podcast

News photo

Uber Disappointed as Taiwan Rejects Deal for Delivery Hero Unit