CVE-2007-5116
EPSS 8.8%perl - arbitrary code execution
Published: 11/7/2007Modified: 4/28/2026
Also known as:DEBIAN-CVE-2007-5116
Description
Buffer overflow in the polymorphic opcode support in the Regular Expression Engine (regcomp.c) in Perl 5.8 allows context-dependent attackers to execute arbitrary code by switching from byte to Unicode (UTF) characters in a regular expression.
Affected packages (3)
- Debian/perlfrom 0, < 5.8.8-12
- Debian/perlfrom 0, < 5.8.4-8sarge6
- Debian/perlfrom 0, < 5.8.8-11.1+lenny1