CVE-2023-47038
CVSS 3.1 Score 7.8 of 10 (high)
Details
Published Dec 18, 2023
Updated: May 30, 2024
CWE ID 122
CWE ID 787
Summary
CVE-2023-47038 is a newly discovered vulnerability affecting Perl versions 5.30.0 through 5.38.0. This issue arises when the Perl interpreter compiles a specially crafted regular expression, resulting in a heap-allocated buffer overflow. An attacker who exploits this vulnerability can manipulate the application's memory, potentially leading to code execution or denial-of-service attacks. It is recommended that users upgrade to the latest stable Perl release to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Products
- Perl
Affected Vendors
- Perl