← Zurück zur CVE-Suche

CVE-2017-20230

Storable

Beschreibung

Storable versions before 3.05 for Perl has a stack overflow. The retrieve_hook function stored the length of the class name into a signed integer but in read operations treated the length as unsigned. This allowed an attacker to craft data that could trigger the overflow.

CVSS 10EPSS 0.641%Risiko 1.06
Quelle öffnen
Veröffentlicht
2026-04-21 16:16:18
Betroffene Versionen
<3.05
Typ
Package
Vektor
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H