CVE-2007-5116
Last modified
CVE-2007-5116 is a vulnerability of currently unknown severity. Buffer overflow in the polymorphic opcode support in the Regular Expression Engine (regcomp.c) in Perl 5.8 allows context-dependent attackers to execute arbitrary code by switching from byte to Unicode (UTF) characters in a regular expression.. EPSS estimates a 4.83% chance of exploitation in the next 30 days.
Description
Buffer overflow in the polymorphic opcode support in the Regular Expression Engine (regcomp.c) in Perl 5.8 allows context-dependent attackers to execute arbitrary code by switching from byte to Unicode (UTF) characters in a regular expression.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Larry Wall | Perl | 5.8.0 |
| Larry Wall | Perl | 5.8.1 |
| Larry Wall | Perl | 5.8.3 |
| Larry Wall | Perl | 5.8.4 |
| Larry Wall | Perl | 5.8.4.1 |
| Larry Wall | Perl | 5.8.4.2 |
| Larry Wall | Perl | 5.8.4.2.3 |
| Larry Wall | Perl | 5.8.4.3 |
| Larry Wall | Perl | 5.8.4.4 |
| Larry Wall | Perl | 5.8.4.5 |
| Larry Wall | Perl | 5.8.6 |
| Mandrakesoft | Mandrake Multi Network Firewall | 2.0 |
| Openpkg | Openpkg | current |
| Redhat | Enterprise Linux | 1.0 |
References
- http://secunia.com/advisories/27531Vendor Advisory
- http://www.us-cert.gov/cas/techalerts/TA07-352A.htmlUS Government Resource
- http://secunia.com/advisories/27531Vendor Advisory
- http://www.us-cert.gov/cas/techalerts/TA07-352A.htmlUS Government Resource
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2007-5116?
How severe is CVE-2007-5116?
How do I fix CVE-2007-5116?
Are you affected by CVE-2007-5116?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
