PT-2018-17752 · Perl+3 · Perl+3

Published

2017-12-18

·

Updated

2024-05-22

·

CVE-2018-6798

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Perl versions 5.22 through 5.26
Description An issue was discovered where matching a crafted locale dependent regular expression can cause a heap-based buffer over-read and potentially information disclosure.
Recommendations For Perl versions 5.22 through 5.26, at the moment, there is no information about a newer version that contains a fix for this issue.

Fix

Out of bounds Read

Weakness Enumeration

Related Identifiers

ALT-PU-2017-2810
CVE-2018-6798
DSA-4172-1
MGASA-2018-0241
OPENSUSE-SU-2024_1762-1
RHSA-2018:1192
SUSE-SU-2018:0976-1
SUSE-SU-2018:1074-1
SUSE-SU-2018:1972-1
SUSE-SU-2018:1972-2
SUSE-SU-2018_0976-1
SUSE-SU-2024:1630-1
SUSE-SU-2024:1762-1
SUSE-SU-2024:1762-2
SUSE-SU-2024_1762-1
USN-3625-1

Affected Products

Alt Linux
Perl
Suse
Ubuntu