Buffer Over-read Vulnerability in Perl Affecting Multiple Versions
CVE-2018-18313
9.1CRITICAL
Summary
A vulnerability exists in Perl versions prior to 5.26.3 which allows an attacker to exploit a crafted regular expression, resulting in a buffer over-read condition. This can lead to the unintended disclosure of sensitive information residing in process memory, potentially giving unauthorized access to critical data. Users of affected versions should upgrade to the latest release to mitigate this risk.
References
CVSS V3.1
Score:
9.1
Severity:
CRITICAL
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved