Vulnerability Details CVE-2018-6798
An issue was discovered in Perl 5.22 through 5.26. Matching a crafted locale dependent regular expression can cause a heap-based buffer over-read and potentially information disclosure.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.015
EPSS Ranking 80.0%
CVSS Severity
CVSS v3 Score 7.5
CVSS v2 Score 5.0
Products affected by CVE-2018-6798
-
-
cpe:2.3:a:perl:perl:5.22.0
-
cpe:2.3:a:perl:perl:5.22.1
-
cpe:2.3:a:perl:perl:5.22.2
-
cpe:2.3:a:perl:perl:5.22.3
-
cpe:2.3:a:perl:perl:5.22.4
-
cpe:2.3:a:perl:perl:5.23.0
-
cpe:2.3:a:perl:perl:5.23.1
-
cpe:2.3:a:perl:perl:5.23.2
-
cpe:2.3:a:perl:perl:5.23.3
-
cpe:2.3:a:perl:perl:5.23.4
-
cpe:2.3:a:perl:perl:5.23.5
-
cpe:2.3:a:perl:perl:5.23.6
-
cpe:2.3:a:perl:perl:5.23.7
-
cpe:2.3:a:perl:perl:5.23.8
-
cpe:2.3:a:perl:perl:5.23.9
-
cpe:2.3:a:perl:perl:5.24.0
-
cpe:2.3:a:perl:perl:5.24.1
-
cpe:2.3:a:perl:perl:5.24.2
-
cpe:2.3:a:perl:perl:5.24.3
-
cpe:2.3:a:perl:perl:5.24.4
-
cpe:2.3:a:perl:perl:5.25.0
-
cpe:2.3:a:perl:perl:5.25.1
-
cpe:2.3:a:perl:perl:5.25.10
-
cpe:2.3:a:perl:perl:5.25.11
-
cpe:2.3:a:perl:perl:5.25.12
-
cpe:2.3:a:perl:perl:5.25.2
-
cpe:2.3:a:perl:perl:5.25.3
-
cpe:2.3:a:perl:perl:5.25.4
-
cpe:2.3:a:perl:perl:5.25.5
-
cpe:2.3:a:perl:perl:5.25.6
-
cpe:2.3:a:perl:perl:5.25.7
-
cpe:2.3:a:perl:perl:5.25.8
-
cpe:2.3:a:perl:perl:5.25.9
-
cpe:2.3:o:canonical:ubuntu_linux:14.04
-
cpe:2.3:o:canonical:ubuntu_linux:16.04
-
cpe:2.3:o:canonical:ubuntu_linux:17.10
-
cpe:2.3:o:debian:debian_linux:7.0
-
cpe:2.3:o:debian:debian_linux:8.0
-
cpe:2.3:o:debian:debian_linux:9.0
-
cpe:2.3:o:redhat:enterprise_linux_server:6.0
-
cpe:2.3:o:redhat:enterprise_linux_server:7.0
-
cpe:2.3:o:redhat:enterprise_linux_server:7.3
-
cpe:2.3:o:redhat:enterprise_linux_server:7.4
-
cpe:2.3:o:redhat:enterprise_linux_server:7.5
-
cpe:2.3:o:redhat:enterprise_linux_workstation:6.0
-
cpe:2.3:o:redhat:enterprise_linux_workstation:7.0