CVE Vulnerabilities

CVE-2005-0156

Published: Feb 07, 2005 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
2.1 LOW
AV:L/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Buffer overflow in the PerlIO implementation in Perl 5.8.0, when installed with setuid support (sperl), allows local users to execute arbitrary code by setting the PERLIO_DEBUG variable and executing a Perl script whose full pathname contains a long directory tree.

Affected Software

NameVendorStart VersionEnd Version
PerlLarry_wall5.8.0 (including)5.8.0 (including)
PerlLarry_wall5.8.1 (including)5.8.1 (including)
PerlLarry_wall5.8.3 (including)5.8.3 (including)
PerlLarry_wall5.8.4 (including)5.8.4 (including)
PerlLarry_wall5.8.4.1 (including)5.8.4.1 (including)
PerlLarry_wall5.8.4.2 (including)5.8.4.2 (including)
PerlLarry_wall5.8.4.2.3 (including)5.8.4.2.3 (including)
PerlLarry_wall5.8.4.3 (including)5.8.4.3 (including)
PerlLarry_wall5.8.4.4 (including)5.8.4.4 (including)
PerlLarry_wall5.8.4.5 (including)5.8.4.5 (including)
PropackSgi3.0 (including)3.0 (including)
Red Hat Enterprise Linux 3RedHatperl-2:5.8.0-89.10*
Red Hat Enterprise Linux 4RedHatperl-3:5.8.5-12.1*
PerlUbuntudapper*
PerlUbuntudevel*
PerlUbuntuedgy*
PerlUbuntufeisty*

References