Security Advisories (2)
CVE-2002-1742 (2002-04-08)

Allows remote attackers to load arbitrary Perl functions by suppling a non-existent function in a script using a SOAP::Lite module, which causes the AUTOLOAD subroutine to trigger.

CVE-2015-8978 (2015-07-21)

An example attack consists of defining 10 or more XML entities, each defined as consisting of 10 of the previous entity, with the document consisting of a single instance of the largest entity, which expands to one billion copies of the first entity. The amount of computer memory used for handling an external SOAP call would likely exceed that available to the process parsing the XML.

Changes for version 0.40 - 2000-10-15

  • ! fixed die in mailto: protocol if you don't have URI::URL installed ! fixed misbehavior on Mac platform (thanks to Carl K. Cunningham)
  • added default namespace processing [xmlns] (thanks to Petr Janata)
  • added objects-by-reference, simple garbage collection and activation
  • added full access to envelope on server side (see examples in My::ParametersByName.pm and parametersbyname.pl)
  • added versionMismatch reaction
  • added local: protocol for local binding without any transport
  • added examples for objects-by-reference: persistent/session iterators and chat (40 lines on server and 25 lines on client side)

Modules

Library for SOAP clients and servers in Perl
Server/Client side HTTP support for SOAP::Lite for Perl

Provides

in lib/SOAP/Lite.pm
in lib/SOAP/Lite.pm
in lib/SOAP/Lite.pm
in lib/SOAP/Lite.pm
in lib/SOAP/Lite.pm
in lib/SOAP/Lite.pm
in lib/SOAP/Lite.pm
in lib/SOAP/Lite.pm
in lib/SOAP/Lite.pm
in lib/SOAP/Lite.pm
in lib/SOAP/Transport/HTTP.pm
in lib/SOAP/Transport/HTTP.pm
in lib/SOAP/Transport/HTTP.pm
in lib/SOAP/Transport/HTTP.pm
in lib/SOAP/Transport/HTTP.pm
in lib/SOAP/Transport/LOCAL.pm
in lib/SOAP/Transport/LOCAL.pm
in lib/SOAP/Transport/MAILTO.pm
in lib/SOAP/Transport/MAILTO.pm
in lib/SOAP/Transport/POP3.pm
in lib/SOAP/Transport/POP3.pm