CVE Vulnerabilities

CVE-2004-2022

Published: Dec 31, 2004 | Modified: Jul 11, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
2.1 LOW
AV:L/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu

ActivePerl 5.8.x and others, and Larry Walls Perl 5.6.1 and others, when running on Windows systems, allows attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long argument to the system command, which leads to a stack-based buffer overflow. NOTE: it is unclear whether this bug is in Perl or the OS API that is used by Perl.

Affected Software

Name Vendor Start Version End Version
Activeperl Activestate 5.6.1 5.6.1
Activeperl Activestate 5.6.1.630 5.6.1.630
Activeperl Activestate 5.6.2 5.6.2
Activeperl Activestate 5.6.3 5.6.3
Activeperl Activestate 5.7.1 5.7.1
Activeperl Activestate 5.7.2 5.7.2
Activeperl Activestate 5.7.3 5.7.3
Activeperl Activestate 5.8 5.8

References