Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2015-8608

Опубликовано: 11 янв. 2016
Источник: redhat
CVSS3: 0

Описание

The VDir::MapPathA and VDir::MapPathW functions in Perl 5.22 allow remote attackers to cause a denial of service (out-of-bounds read) and possibly execute arbitrary code via a crafted (1) drive letter or (2) pInName argument.

Отчет

This is a Microsoft Windows only flaw in perl as mentioned in the original report at: https://github.com/Perl/perl5/issues/15067#issuecomment-544077033

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5perlNot affected
Red Hat Enterprise Linux 6perlNot affected
Red Hat Enterprise Linux 7perlNot affected
Red Hat Enterprise Linux 8perlNot affected
Red Hat Enterprise Linux 8perl:5.24/perlNot affected

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-121
Дефект:
CWE-125
https://bugzilla.redhat.com/show_bug.cgi?id=1857318perl: out-of-bounds read and buffer overflow in functions VDir::MapPathA and VDir::MapPathW via a crafted drive letter or a pInName argument

0 Low

CVSS3

Связанные уязвимости

CVSS3: 9.8
ubuntu
почти 9 лет назад

The VDir::MapPathA and VDir::MapPathW functions in Perl 5.22 allow remote attackers to cause a denial of service (out-of-bounds read) and possibly execute arbitrary code via a crafted (1) drive letter or (2) pInName argument.

CVSS3: 9.8
nvd
почти 9 лет назад

The VDir::MapPathA and VDir::MapPathW functions in Perl 5.22 allow remote attackers to cause a denial of service (out-of-bounds read) and possibly execute arbitrary code via a crafted (1) drive letter or (2) pInName argument.

CVSS3: 9.8
debian
почти 9 лет назад

The VDir::MapPathA and VDir::MapPathW functions in Perl 5.22 allow rem ...

CVSS3: 9.8
github
больше 3 лет назад

The VDir::MapPathA and VDir::MapPathW functions in Perl 5.22 allow remote attackers to cause a denial of service (out-of-bounds read) and possibly execute arbitrary code via a crafted (1) drive letter or (2) pInName argument.

0 Low

CVSS3