Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2017-20230

Опубликовано: 21 апр. 2026
Источник: nvd
CVSS3: 10
EPSS Низкий

Описание

Storable versions before 3.05 for Perl has a stack overflow.

The retrieve_hook function stored the length of the class name into a signed integer but in read operations treated the length as unsigned. This allowed an attacker to craft data that could trigger the overflow.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:nwclark:storable:*:*:*:*:*:perl:*:*
Версия до 3.05 (исключая)

EPSS

Процентиль: 48%
0.00641
Низкий

10 Critical

CVSS3

Дефекты

CWE-121

Связанные уязвимости

CVSS3: 10
ubuntu
4 месяца назад

Storable versions before 3.05 for Perl has a stack overflow. The retrieve_hook function stored the length of the class name into a signed integer but in read operations treated the length as unsigned. This allowed an attacker to craft data that could trigger the overflow.

CVSS3: 6.5
redhat
4 месяца назад

Storable versions before 3.05 for Perl has a stack overflow. The retrieve_hook function stored the length of the class name into a signed integer but in read operations treated the length as unsigned. This allowed an attacker to craft data that could trigger the overflow.

msrc
4 месяца назад

Storable versions before 3.05 for Perl has a stack overflow

CVSS3: 10
debian
4 месяца назад

Storable versions before 3.05 for Perl has a stack overflow. The retr ...

suse-cvrf
4 месяца назад

Security update for perl

EPSS

Процентиль: 48%
0.00641
Низкий

10 Critical

CVSS3

Дефекты

CWE-121