Fedora 11 : perl-Net-OAuth-0.19-1.fc11 (2009-10539)
Medium Nessus Plugin ID 42158
SynopsisThe remote Fedora host is missing a security update.
DescriptionA session fixation vulnerability was discovered in OAuth protocol 1.0.
Perl OAuth bindings were updated to support the new version of the OAauth protocol that was issued to address the vulnerability. All OAuth users are strongly advised to update to this updated package and protocol version 1.0a which fixes the vulnerability. Upstream advisory: http://oauth.net/advisories/2009-1
Note that Tenable Network Security has extracted the preceding description block directly from the Fedora security advisory. Tenable has attempted to automatically clean and format it as much as possible without introducing additional issues.
SolutionUpdate the affected perl-Net-OAuth package.