Vulnerabilities
Vulnerable Software
Larry Wall:  >> Perl  >> 5.6  Security Vulnerabilities
Multiple scripts in the perl package in Trustix Secure Linux 1.5 through 2.1 and other operating systems allows local users to overwrite files via a symlink attack on temporary files.
CVSS Score
2.1
EPSS Score
0.001
Published
2005-02-09
Integer overflow in the duplication operator in ActivePerl allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a large multiplier, which may trigger a buffer overflow.
CVSS Score
7.5
EPSS Score
0.075
Published
2004-12-31
suidperl (aka sperl) does not properly cleanse the escape sequence "~!" before calling /bin/mail to send an error report, which allows local users to gain privileges by setting the "interactive" environmental variable and calling suidperl with a filename that contains the escape sequence.
CVSS Score
7.2
EPSS Score
0.003
Published
2000-10-20


Contact Us

Shodan ® - All rights reserved