PT-2007-6212 · Perl+1 · Perl+1
Published
2007-11-05
·
Updated
2024-06-15
·
CVE-2007-5116
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Perl 5.8
Description
The issue is related to a buffer overflow in the polymorphic opcode support in the Regular Expression Engine. This allows context-dependent attackers to execute arbitrary code by switching from byte to Unicode (UTF) characters in a regular expression.
Recommendations
For Perl 5.8, at the moment, there is no information about a newer version that contains a fix for this issue.
Fix
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Perl
Red Hat