FreeBSD : perl -- regular expressions unicode data buffer overflow (5b47c279-8cb5-11dc-8878-0016179b2dd5)

High Nessus Plugin ID 27813


The remote FreeBSD host is missing one or more security-related updates.


Red Hat reports :

A flaw was found in Perl's regular expression engine. Specially crafted input to a regular expression can cause Perl to improperly allocate memory, possibly resulting in arbitrary code running with the permissions of the user running Perl.


Update the affected packages.

See Also

Plugin Details

Severity: High

ID: 27813

File Name: freebsd_pkg_5b47c2798cb511dc88780016179b2dd5.nasl

Version: $Revision: 1.15 $

Type: local

Published: 2007/11/07

Modified: 2015/05/13

Dependencies: 12634

Risk Information

Risk Factor: High


Base Score: 7.5

Vector: CVSS2#AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Information

CPE: p-cpe:/a:freebsd:freebsd:perl, p-cpe:/a:freebsd:freebsd:perl-threaded, cpe:/o:freebsd:freebsd

Required KB Items: Host/local_checks_enabled, Host/FreeBSD/release, Host/FreeBSD/pkg_info

Patch Publication Date: 2007/11/06

Vulnerability Publication Date: 2007/11/05

Reference Information

CVE: CVE-2007-5116

Secunia: 27546

CWE: 119