Public exploit available
Public proof-of-concept or exploit code exists (ExploitDB / Metasploit / Nuclei).

CVE-1999-0034

7 documents4 sources
Severity
7.2HIGH
EPSS
0.3%
top 42.63%
CISA KEV
Not in KEV
Exploit
PoC available
Public exploit / PoC exists
Timeline
PublishedMay 29
Latest updateApr 30

Description

Buffer overflow in suidperl (sperl), Perl 4.x and 5.x.

CVSS vector

AV:L/AC:L/C:C/I:C/A:CExploitability: 3.9 | Impact: 10.0

Affected Packages4 packages

NVDbsdi/bsd_os2.1, 3.0+1
NVDredhat/linux4.0, 4.1, 4.2+2
NVDsgi/freeware1.0, 2.0+1

🔴Vulnerability Details

2
GHSA
GHSA-6v5q-h64v-p5mp: Buffer overflow in suidperl (sperl), Perl 42022-04-30
CVEList
CVE-1999-0034: Buffer overflow in suidperl (sperl), Perl 41999-09-29

💥Exploits & PoCs

4
Exploit-DB
BSDi SUIDPerl - Local Stack Buffer Overflow2000-11-21
Exploit-DB
BSD/OS 2.1/3.0 / Larry Wall Perl 5.0 03 / RedHat 4.0/4.1 / SGI Freeware 1.0/2.0 SUIDPerl - Local Overflow (1)1997-04-17
Exploit-DB
BSD/OS 2.1/3.0 / Larry Wall Perl 5.0 03 / RedHat 4.0/4.1 / SGI Freeware 1.0/2.0 SUIDPerl - Local Overflow (2)1997-04-17
Exploit-DB
suid_perl 5.001 - Command Execution1996-06-01