Gentoo Linux Security Advisory 200512-1...

- AV AC AU C I A
发布: 2005-12-14
修订: 2025-04-13

Gentoo Linux Security Advisory GLSA 200512-01 - Jack Louis discovered a new way to exploit format string errors in Perl that could lead to the execution of arbitrary code. This is performed by causing an integer wrap overflow in the efix variable inside the function Perl_sv_vcatpvfn. The proposed fix closes that specific exploitation vector to mitigate the risk of format string programming errors in Perl. This fix does not remove the need to fix such errors in Perl code. Versions less than 5.8.7-r3 are affected.

0%
当前有1条漏洞利用/PoC
当前有0条受影响产品信息