Логотип exploitDog
bind:CVE-2025-11683
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-11683

Количество 4

Количество 4

ubuntu логотип

CVE-2025-11683

4 месяца назад

YAML::Syck versions before 1.36 for Perl has missing null-terminators which causes out-of-bounds read and potential information disclosure Missing null terminators in token.c leads to but-of-bounds read which allows adjacent variable to be read The issue is seen with complex YAML files with a hash of all keys and empty values.  There is no indication that the issue leads to accessing memory outside that allocated to the module.

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2025-11683

4 месяца назад

YAML::Syck versions before 1.36 for Perl has missing null-terminators which causes out-of-bounds read and potential information disclosure Missing null terminators in token.c leads to but-of-bounds read which allows adjacent variable to be read The issue is seen with complex YAML files with a hash of all keys and empty values.  There is no indication that the issue leads to accessing memory outside that allocated to the module.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2025-11683

4 месяца назад

YAML::Syck versions before 1.36 for Perl has missing null-terminators ...

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-gr2g-vmxj-5cv8

4 месяца назад

YAML::Syck versions before 1.36 for Perl has missing null-terminators which causes out-of-bounds read and potential information disclosure Missing null terminators in token.c leads to but-of-bounds read which allows adjacent variable to be read The issue is seen with complex YAML files with a hash of all keys and empty values.  There is no indication that the issue leads to accessing memory outside that allocated to the module.

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2025-11683

YAML::Syck versions before 1.36 for Perl has missing null-terminators which causes out-of-bounds read and potential information disclosure Missing null terminators in token.c leads to but-of-bounds read which allows adjacent variable to be read The issue is seen with complex YAML files with a hash of all keys and empty values.  There is no indication that the issue leads to accessing memory outside that allocated to the module.

CVSS3: 6.5
0%
Низкий
4 месяца назад
nvd логотип
CVE-2025-11683

YAML::Syck versions before 1.36 for Perl has missing null-terminators which causes out-of-bounds read and potential information disclosure Missing null terminators in token.c leads to but-of-bounds read which allows adjacent variable to be read The issue is seen with complex YAML files with a hash of all keys and empty values.  There is no indication that the issue leads to accessing memory outside that allocated to the module.

CVSS3: 6.5
0%
Низкий
4 месяца назад
debian логотип
CVE-2025-11683

YAML::Syck versions before 1.36 for Perl has missing null-terminators ...

CVSS3: 6.5
0%
Низкий
4 месяца назад
github логотип
GHSA-gr2g-vmxj-5cv8

YAML::Syck versions before 1.36 for Perl has missing null-terminators which causes out-of-bounds read and potential information disclosure Missing null terminators in token.c leads to but-of-bounds read which allows adjacent variable to be read The issue is seen with complex YAML files with a hash of all keys and empty values.  There is no indication that the issue leads to accessing memory outside that allocated to the module.

CVSS3: 6.5
0%
Низкий
4 месяца назад

Уязвимостей на страницу