Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 8

Количество 8

ubuntu логотип

CVE-2026-8829

около 2 месяцев назад

HTML::Entities versions before 3.84 for Perl read freed heap memory in _decode_entities. The XS routine backing HTML::Entities::_decode_entities cached a pointer (repl) into the entity-value SV returned by hv_fetch on the entity2char hash. When the input SV was identical to a value SV in that hash, and that value contained its own key as an entity reference, a later call to grow_gap() reallocated the SV's PV buffer and freed the backing allocation that repl still pointed into. The subsequent copy loop read repl_len bytes from the freed allocation. The read may disclose adjacent heap contents into the destination SV.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2026-8829

около 2 месяцев назад

HTML::Entities versions before 3.84 for Perl read freed heap memory in _decode_entities. The XS routine backing HTML::Entities::_decode_entities cached a pointer (repl) into the entity-value SV returned by hv_fetch on the entity2char hash. When the input SV was identical to a value SV in that hash, and that value contained its own key as an entity reference, a later call to grow_gap() reallocated the SV's PV buffer and freed the backing allocation that repl still pointed into. The subsequent copy loop read repl_len bytes from the freed allocation. The read may disclose adjacent heap contents into the destination SV.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2026-8829

около 2 месяцев назад

HTML::Entities versions before 3.84 for Perl read freed heap memory in _decode_entities

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2026-8829

около 2 месяцев назад

HTML::Entities versions before 3.84 for Perl read freed heap memory in ...

CVSS3: 7.5
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:21126-1

около 1 месяца назад

Security update for perl-HTML-Parser

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:2950-1

17 дней назад

Security update for perl-HTML-Parser

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:2948-1

17 дней назад

Security update for perl-HTML-Parser

EPSS: Низкий
github логотип

GHSA-9p7j-9995-m88w

около 2 месяцев назад

HTML::Entities versions before 3.84 for Perl read freed heap memory in _decode_entities. The XS routine backing HTML::Entities::_decode_entities cached a pointer (repl) into the entity-value SV returned by hv_fetch on the entity2char hash. When the input SV was identical to a value SV in that hash, and that value contained its own key as an entity reference, a later call to grow_gap() reallocated the SV's PV buffer and freed the backing allocation that repl still pointed into. The subsequent copy loop read repl_len bytes from the freed allocation. The read may disclose adjacent heap contents into the destination SV.

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-8829

HTML::Entities versions before 3.84 for Perl read freed heap memory in _decode_entities. The XS routine backing HTML::Entities::_decode_entities cached a pointer (repl) into the entity-value SV returned by hv_fetch on the entity2char hash. When the input SV was identical to a value SV in that hash, and that value contained its own key as an entity reference, a later call to grow_gap() reallocated the SV's PV buffer and freed the backing allocation that repl still pointed into. The subsequent copy loop read repl_len bytes from the freed allocation. The read may disclose adjacent heap contents into the destination SV.

CVSS3: 7.5
0%
Низкий
около 2 месяцев назад
nvd логотип
CVE-2026-8829

HTML::Entities versions before 3.84 for Perl read freed heap memory in _decode_entities. The XS routine backing HTML::Entities::_decode_entities cached a pointer (repl) into the entity-value SV returned by hv_fetch on the entity2char hash. When the input SV was identical to a value SV in that hash, and that value contained its own key as an entity reference, a later call to grow_gap() reallocated the SV's PV buffer and freed the backing allocation that repl still pointed into. The subsequent copy loop read repl_len bytes from the freed allocation. The read may disclose adjacent heap contents into the destination SV.

CVSS3: 7.5
0%
Низкий
около 2 месяцев назад
msrc логотип
CVE-2026-8829

HTML::Entities versions before 3.84 for Perl read freed heap memory in _decode_entities

CVSS3: 7.5
0%
Низкий
около 2 месяцев назад
debian логотип
CVE-2026-8829

HTML::Entities versions before 3.84 for Perl read freed heap memory in ...

CVSS3: 7.5
0%
Низкий
около 2 месяцев назад
suse-cvrf логотип
openSUSE-SU-2026:21126-1

Security update for perl-HTML-Parser

0%
Низкий
около 1 месяца назад
suse-cvrf логотип
SUSE-SU-2026:2950-1

Security update for perl-HTML-Parser

0%
Низкий
17 дней назад
suse-cvrf логотип
SUSE-SU-2026:2948-1

Security update for perl-HTML-Parser

0%
Низкий
17 дней назад
github логотип
GHSA-9p7j-9995-m88w

HTML::Entities versions before 3.84 for Perl read freed heap memory in _decode_entities. The XS routine backing HTML::Entities::_decode_entities cached a pointer (repl) into the entity-value SV returned by hv_fetch on the entity2char hash. When the input SV was identical to a value SV in that hash, and that value contained its own key as an entity reference, a later call to grow_gap() reallocated the SV's PV buffer and freed the backing allocation that repl still pointed into. The subsequent copy loop read repl_len bytes from the freed allocation. The read may disclose adjacent heap contents into the destination SV.

CVSS3: 7.5
0%
Низкий
около 2 месяцев назад

Уязвимостей на страницу