Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2011-0761

Опубликовано: 03 мая 2011
Источник: redhat
CVSS2: 5
EPSS Низкий

Описание

Perl 5.10.x allows context-dependent attackers to cause a denial of service (NULL pointer dereference and application crash) by leveraging an ability to inject arguments into a (1) getpeername, (2) readdir, (3) closedir, (4) getsockname, (5) rewinddir, (6) tell, or (7) telldir function call.

Отчет

Red Hat does not consider this problem to be a security issue. Input passed to these functions should be under the full control of the script author, therefore no trust boundary is crossed.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 4perlNot affected
Red Hat Enterprise Linux 5perlNot affected
Red Hat Enterprise Linux 6perlWill not fix
Red Hat Enterprise Linux 7perlNot affected

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-476
https://bugzilla.redhat.com/show_bug.cgi?id=704994perl: NULL pointer dereference via crafted SOCKET, DIRHANDLE or FILEHANDLE value

EPSS

Процентиль: 95%
0.08749
Низкий

5 Medium

CVSS2

Связанные уязвимости

ubuntu
около 15 лет назад

Perl 5.10.x allows context-dependent attackers to cause a denial of service (NULL pointer dereference and application crash) by leveraging an ability to inject arguments into a (1) getpeername, (2) readdir, (3) closedir, (4) getsockname, (5) rewinddir, (6) tell, or (7) telldir function call.

nvd
около 15 лет назад

Perl 5.10.x allows context-dependent attackers to cause a denial of service (NULL pointer dereference and application crash) by leveraging an ability to inject arguments into a (1) getpeername, (2) readdir, (3) closedir, (4) getsockname, (5) rewinddir, (6) tell, or (7) telldir function call.

debian
около 15 лет назад

Perl 5.10.x allows context-dependent attackers to cause a denial of se ...

github
около 4 лет назад

Perl 5.10.x allows context-dependent attackers to cause a denial of service (NULL pointer dereference and application crash) by leveraging an ability to inject arguments into a (1) getpeername, (2) readdir, (3) closedir, (4) getsockname, (5) rewinddir, (6) tell, or (7) telldir function call.

CVSS3: 3.7
fstec
около 15 лет назад

Уязвимость функции telldir интерпретатора языка программирования Perl , позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 95%
0.08749
Низкий

5 Medium

CVSS2