cbcvebase.
CVE-2005-0156
published 2005-02-07

CVE-2005-0156: Buffer overflow in the PerlIO implementation in Perl 5.8.0, when installed with setuid support (sperl), allows local users to execute arbitrary code by setting…

PriorityP419low2.1CVSS 2.0
AVLACLAuNCNIPAN
EXPLOIT
EPSS
1.31%
67.5th percentile
Buffer overflow in the PerlIO implementation in Perl 5.8.0, when installed with setuid support (sperl), allows local users to execute arbitrary code by setting the PERLIO_DEBUG variable and executing a Perl script whose full pathname contains a long directory tree.

Affected

32 ranges· showing 25
VendorProductVersion rangeFixed in
debianperl< perl 5.8.4-6 (bookworm)perl 5.8.4-6 (bookworm)
ibmaix
ibmaix
larry_wallperl
larry_wallperl
larry_wallperl
larry_wallperl
larry_wallperl
larry_wallperl
larry_wallperl
larry_wallperl
larry_wallperl
larry_wallperl
perlperl>= 0 < 5.8.4-65.8.4-6
perlperl>= 0 < 5.8.4-65.8.4-6
perlperl>= 0 < 5.8.4-65.8.4-6
perlperl>= 0 < 5.8.4-65.8.4-6
redhatenterprise_linux
redhatenterprise_linux_desktop
redhatfedora_core
sgipropack
susesuse_linux
susesuse_linux
susesuse_linux
susesuse_linux

CVSS provenance

nvdv2.02.1LOWAV:L/AC:L/Au:N/C:N/I:P/A:N
osv2.1LOW
vendor_debian2.1LOW
vendor_redhat2.1LOW
CVEs like this are exactly what “Exploited This Week” covers.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.