Vulnerability Name:

CVE-2007-5116 (CCN-38270)

Assigned:2007-11-05
Published:2007-11-05
Updated:2018-10-15
Summary:Buffer overflow in the polymorphic opcode support in the Regular Expression Engine (regcomp.c) in Perl 5.8 allows context-dependent attackers to execute arbitrary code by switching from byte to Unicode (UTF) characters in a regular expression.
CVSS v3 Severity:7.3 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): Low
Integrity (I): Low
Availibility (A): Low
CVSS v2 Severity:7.5 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P)
5.5 Medium (Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P/E:U/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Authentication (Au): None
Impact Metrics:Confidentiality (C): Partial
Integrity (I): Partial
Availibility (A): Partial
6.8 Medium (CCN CVSS v2 Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P)
5.0 Medium (CCN Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P/E:U/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Medium
Athentication (Au): None
Impact Metrics:Confidentiality (C): Partial
Integrity (I): Partial
Availibility (A): Partial
Vulnerability Type:CWE-119
Vulnerability Consequences:Gain Access
References:Source: CCN
Type: IBM AIX FTP site
perl_ifix.tar efix

Source: CONFIRM
Type: UNKNOWN
ftp://aix.software.ibm.com/aix/efixes/security/README

Source: CCN
Type: BugTraq Mailing List, Mon Dec 17 2007 - 15:47:29 CST
Apple OS X Software Update Remote Command Execution

Source: MITRE
Type: CNA
CVE-2007-5116

Source: CCN
Type: Apple Web site
About Security Update 2007-009

Source: CONFIRM
Type: UNKNOWN
http://docs.info.apple.com/article.html?artnum=307179

Source: CCN
Type: HP Security Bulletin HPSBTU02311 SSRT080001 rev.1 HPSBTU02311 SSRT080001 rev.1
HP Tru64 UNIX running Perl, Remote Execution of Arbitrary Code

Source: APPLE
Type: UNKNOWN
APPLE-SA-2007-12-17

Source: CCN
Type: Security-announce Mailing List, Mon Jan 7 17:46:23 PST 2008
VMSA-2008-0001 Moderate OpenPegasus PAM Authentication Buffer Overflow and updated service console packages

Source: MLIST
Type: UNKNOWN
[Security-announce] 20080107 VMSA-2008-0001 Moderate OpenPegasus PAM Authentication Buffer Overflow and updated service console packages

Source: CCN
Type: VMware Security-Announce Mailing List, Tue Jan 22 16:42:45 PST 2008
UPDATED VMSA-2008-0001.1 Moderate OpenPegasus PAM Authentication Buffer Overflow and updated service console packages

Source: HP
Type: UNKNOWN
HPSBTU02311

Source: CCN
Type: RHSA-2007-0966
Important: perl security update

Source: CCN
Type: RHSA-2007-1011
Important: perl security update

Source: CCN
Type: RHSA-2010-0602
Moderate: Red Hat Certificate System 7.3 security update

Source: SECUNIA
Type: UNKNOWN
27479

Source: SECUNIA
Type: UNKNOWN
27515

Source: SECUNIA
Type: Vendor Advisory
27531

Source: CCN
Type: SA27546
Perl Regular Expressions Unicode Data Buffer Overflow

Source: SECUNIA
Type: UNKNOWN
27546

Source: SECUNIA
Type: UNKNOWN
27548

Source: SECUNIA
Type: UNKNOWN
27570

Source: SECUNIA
Type: UNKNOWN
27613

Source: SECUNIA
Type: UNKNOWN
27756

Source: SECUNIA
Type: UNKNOWN
27936

Source: CCN
Type: SA28167
IBM AIX Perl Regular Expressions Unicode Data Buffer Overflow

Source: SECUNIA
Type: UNKNOWN
28167

Source: CCN
Type: SA28368
VMware ESX Server Multiple Security Updates

Source: SECUNIA
Type: UNKNOWN
28368

Source: CCN
Type: SA28387
Avaya Products Perl Regular Expressions Unicode Data Buffer Overflow

Source: SECUNIA
Type: UNKNOWN
28387

Source: CCN
Type: SA28993
HP Tru64 UNIX Perl Regular Expressions Vulnerability

Source: SECUNIA
Type: UNKNOWN
28993

Source: CCN
Type: SA29074
Solaris 10 Perl Regular Expressions Unicode Data Buffer Overflow

Source: SECUNIA
Type: UNKNOWN
29074

Source: CCN
Type: SA31208
IPCop update for perl

Source: SECUNIA
Type: UNKNOWN
31208

Source: CCN
Type: SECTRACK ID: 1018899
Perl Regex Processing Bug May Let Users Execute Arbitrary Code

Source: SECTRACK
Type: UNKNOWN
1018899

Source: SUNALERT
Type: UNKNOWN
31524

Source: CCN
Type: Sun Alert ID: 231524
Security Vulnerability in Solaris 10 Perl 5.8

Source: SUNALERT
Type: UNKNOWN
231524

Source: SUNALERT
Type: UNKNOWN
1018985

Source: CCN
Type: ASA-2007-477
Perl security update (RHSA-2007-1011)

Source: CONFIRM
Type: UNKNOWN
http://support.avaya.com/elmodocs2/security/ASA-2008-014.htm

Source: CCN
Type: ASA-2008-014
Perl security update (RHSA-2007-0966)

Source: CCN
Type: ASA-2008-359
Security Vulnerability in Solaris 10 Perl 5.8 (Sun 231524)

Source: CCN
Type: NORTEL BULLETIN ID: 2008009063, Rev 1
Nortel Response to Sun Alert 231524 - Security Vulnerability in Solaris 10 Perl 5.8

Source: AIXAPAR
Type: UNKNOWN
IZ10220

Source: AIXAPAR
Type: UNKNOWN
IZ10244

Source: DEBIAN
Type: UNKNOWN
DSA-1400

Source: DEBIAN
Type: DSA-1400
perl -- heap overflow

Source: CCN
Type: GLSA-200711-28
Perl: Buffer overflow

Source: GENTOO
Type: UNKNOWN
GLSA-200711-28

Source: CCN
Type: IPCop Web site
IPCop 1.4.21 released

Source: CONFIRM
Type: UNKNOWN
http://www.ipcop.org/index.php?name=News&file=article&sid=41

Source: MANDRIVA
Type: Patch
MDKSA-2007:207

Source: SUSE
Type: UNKNOWN
SUSE-SR:2007:024

Source: CCN
Type: OpenPKG-SA-2007.023
perl

Source: OPENPKG
Type: UNKNOWN
OpenPKG-SA-2007.023

Source: CCN
Type: The Perl Foundation Web site
The Perl Directory - perl.org

Source: REDHAT
Type: UNKNOWN
RHSA-2007:0966

Source: REDHAT
Type: UNKNOWN
RHSA-2007:1011

Source: BUGTRAQ
Type: UNKNOWN
20071110 FLEA-2007-0063-1 perl

Source: BUGTRAQ
Type: UNKNOWN
20071112 FLEA-2007-0069-1 perl

Source: BUGTRAQ
Type: UNKNOWN
20080108 VMSA-2008-0001 Moderate OpenPegasus PAM Authentication Buffer Overflow and updated service console packages

Source: BUGTRAQ
Type: UNKNOWN
20080123 UPDATED VMSA-2008-0001.1 Moderate OpenPegasus PAM Authentication Buffer Overflow and updated service console packages

Source: BID
Type: UNKNOWN
26350

Source: CCN
Type: BID-26350
Perl Unicode Regular Expression Buffer Overflow Vulnerability

Source: CCN
Type: USN-552-1
Perl vulnerability

Source: UBUNTU
Type: UNKNOWN
USN-552-1

Source: CERT
Type: US Government Resource
TA07-352A

Source: CONFIRM
Type: UNKNOWN
http://www.vmware.com/security/advisories/VMSA-2008-0001.html

Source: VUPEN
Type: UNKNOWN
ADV-2007-3724

Source: VUPEN
Type: UNKNOWN
ADV-2007-4238

Source: VUPEN
Type: UNKNOWN
ADV-2007-4255

Source: VUPEN
Type: UNKNOWN
ADV-2008-0064

Source: VUPEN
Type: UNKNOWN
ADV-2008-0641

Source: CCN
Type: HP IT resource center Web site
patch details: PERL_V51BB27-ES-20080207

Source: CCN
Type: IBM - Subscription service - Bulletin
AIX Perl buffer overflow vulnerability

Source: CCN
Type: Red Hat Bugzilla Bug 323571
CVE-2007-5116 perl regular expression UTF parsing errors

Source: MISC
Type: UNKNOWN
https://bugzilla.redhat.com/show_bug.cgi?id=323571

Source: MISC
Type: UNKNOWN
https://bugzilla.redhat.com/show_bug.cgi?id=378131

Source: XF
Type: UNKNOWN
perl-unicode-bo(38270)

Source: XF
Type: UNKNOWN
perl-unicode-bo(38270)

Source: CONFIRM
Type: UNKNOWN
https://issues.rpath.com/browse/RPL-1813

Source: OVAL
Type: UNKNOWN
oval:org.mitre.oval:def:10669

Source: SUSE
Type: SUSE-SR:2007:024
SUSE Security Summary Report

Vulnerable Configuration:Configuration 1:
  • cpe:/o:debian:debian_linux:3.1:*:*:*:*:*:*:*
  • OR cpe:/o:debian:debian_linux:4.0:*:*:*:*:*:*:*
  • OR cpe:/o:debian:debian_linux:4.0:*:alpha:*:*:*:*:*
  • OR cpe:/o:debian:debian_linux:4.0:*:amd64:*:*:*:*:*
  • OR cpe:/o:debian:debian_linux:4.0:*:arm:*:*:*:*:*
  • OR cpe:/o:debian:debian_linux:4.0:*:hppa:*:*:*:*:*
  • OR cpe:/o:debian:debian_linux:4.0:*:ia-32:*:*:*:*:*
  • OR cpe:/o:debian:debian_linux:4.0:*:ia-64:*:*:*:*:*
  • OR cpe:/o:debian:debian_linux:4.0:*:m68k:*:*:*:*:*
  • OR cpe:/o:debian:debian_linux:4.0:*:mips:*:*:*:*:*
  • OR cpe:/o:debian:debian_linux:4.0:*:mipsel:*:*:*:*:*
  • OR cpe:/o:debian:debian_linux:4.0:*:powerpc:*:*:*:*:*
  • OR cpe:/o:debian:debian_linux:4.0:*:s390:*:*:*:*:*
  • OR cpe:/o:debian:debian_linux:4.0:*:sparc:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux:2007:*:*:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux:2007:*:x86_64:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux:2007.1:*:*:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux:2007.1:*:x86-64:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux:2008.0:*:*:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux:2008.0:*:x86-64:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux_corporate_server:3.0:*:*:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux_corporate_server:3.0:*:x86_64:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux_corporate_server:4.0:*:*:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux_corporate_server:4.0:*:x86_64:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:3.0:*:as:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:3.0:*:es:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:3.0:*:ws:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:4.0:*:as:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:4.0:*:es:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:4.0:*:ws:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:5.0:*:client:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:5.0:*:server:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux_desktop:3.0:*:*:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux_desktop:4.0:*:*:*:*:*:*:*
  • OR cpe:/o:redhat:linux_advanced_workstation:2.1:*:ia64:*:*:*:*:*
  • OR cpe:/o:redhat:linux_advanced_workstation:2.1:*:itanium_processor:*:*:*:*:*
  • OR cpe:/o:rpath:rpath_linux:1:*:*:*:*:*:*:*
  • AND
  • cpe:/a:larry_wall:perl:5.8.0:*:*:*:*:*:*:*
  • OR cpe:/a:larry_wall:perl:5.8.1:*:*:*:*:*:*:*
  • OR cpe:/a:larry_wall:perl:5.8.3:*:*:*:*:*:*:*
  • OR cpe:/a:larry_wall:perl:5.8.4:*:*:*:*:*:*:*
  • OR cpe:/a:larry_wall:perl:5.8.4.1:*:*:*:*:*:*:*
  • OR cpe:/a:larry_wall:perl:5.8.4.2:*:*:*:*:*:*:*
  • OR cpe:/a:larry_wall:perl:5.8.4.2.3:*:*:*:*:*:*:*
  • OR cpe:/a:larry_wall:perl:5.8.4.3:*:*:*:*:*:*:*
  • OR cpe:/a:larry_wall:perl:5.8.4.4:*:*:*:*:*:*:*
  • OR cpe:/a:larry_wall:perl:5.8.4.5:*:*:*:*:*:*:*
  • OR cpe:/a:larry_wall:perl:5.8.6:*:*:*:*:*:*:*
  • OR cpe:/a:mandrakesoft:mandrake_multi_network_firewall:2.0:*:*:*:*:*:*:*
  • OR cpe:/a:openpkg:openpkg:current:*:*:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:1.0:*:application_stack:*:*:*:*:*

  • Configuration RedHat 1:
  • cpe:/o:redhat:enterprise_linux:4:*:*:*:*:*:*:*

  • Configuration RedHat 2:
  • cpe:/o:redhat:enterprise_linux:4::as:*:*:*:*:*

  • Configuration RedHat 3:
  • cpe:/o:redhat:enterprise_linux:4::desktop:*:*:*:*:*

  • Configuration RedHat 4:
  • cpe:/o:redhat:enterprise_linux:4::es:*:*:*:*:*

  • Configuration RedHat 5:
  • cpe:/o:redhat:enterprise_linux:4::ws:*:*:*:*:*

  • Configuration RedHat 6:
  • cpe:/o:redhat:enterprise_linux:5:*:*:*:*:*:*:*

  • Configuration RedHat 7:
  • cpe:/o:redhat:enterprise_linux:5::client:*:*:*:*:*

  • Configuration RedHat 8:
  • cpe:/o:redhat:enterprise_linux:5::server:*:*:*:*:*

  • Configuration CCN 1:
  • cpe:/a:redhat:certificate_system:7.3:*:*:*:*:*:*:*
  • AND
  • cpe:/o:suse:suse_linux:*:*:*:*:*:*:*:*
  • OR cpe:/a:openpkg:openpkg:current:*:*:*:*:*:*:*
  • OR cpe:/o:gentoo:linux:*:*:*:*:*:*:*:*
  • OR cpe:/o:ibm:aix:5.2:*:*:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:3::ws:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:3::es:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:3::as:*:*:*:*:*
  • OR cpe:/o:ibm:aix:6.1:*:*:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:3::desktop:*:*:*:*:*
  • OR cpe:/o:ibm:aix:5.3:*:*:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux_corporate_server:3.0:*:*:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:4::as:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:4::desktop:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:4::es:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:4::ws:*:*:*:*:*
  • OR cpe:/o:debian:debian_linux:3.1:*:*:*:*:*:*:*
  • OR cpe:/a:mandrakesoft:mandrake_multi_network_firewall:2.0:*:*:*:*:*:*:*
  • OR cpe:/o:sun:solaris:10:*:sparc:*:*:*:*:*
  • OR cpe:/o:sun:solaris:10:*:x86:*:*:*:*:*
  • OR cpe:/o:canonical:ubuntu:6.06:*:lts:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux:2007:*:*:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux:2007:*:x86_64:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux_corporate_server:4.0:*:*:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux_corporate_server:4.0:*:x86_64:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux_corporate_server:3.0:*:x86_64:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:5:*:*:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux:2007.1:*:*:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux:2008.0:*:x86-64:*:*:*:*:*
  • OR cpe:/o:debian:debian_linux:4.0:*:*:*:*:*:*:*
  • OR cpe:/o:canonical:ubuntu:7.04:*:*:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:5:*:client:*:*:*:*:*
  • OR cpe:/o:canonical:ubuntu:7.10:*:*:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux:2008.0:*:*:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux:2007.1:*:x86-64:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:4.5.z:*:as:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:4.5.z:*:es:*:*:*:*:*
  • OR cpe:/o:apple:mac_os_x:10.4.11:*:*:*:*:*:*:*
  • OR cpe:/o:apple:mac_os_x:10.5.1:*:*:*:*:*:*:*
  • OR cpe:/o:apple:mac_os_x_server:10.4.11:*:*:*:*:*:*:*
  • OR cpe:/o:apple:mac_os_x_server:10.5.1:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    Oval Definitions
    Definition IDClassTitleLast Modified
    oval:org.opensuse.security:def:42420
    P
    Security update for logrotate (Important)
    2022-07-25
    oval:org.opensuse.security:def:20075116
    V
    CVE-2007-5116
    2022-06-30
    oval:org.opensuse.security:def:42211
    P
    Security update for openssh (Important)
    2022-03-10
    oval:org.opensuse.security:def:113107
    P
    perl-32bit-5.34.0-1.1 on GA media (Moderate)
    2022-01-17
    oval:org.opensuse.security:def:32233
    P
    Security update for the Linux Kernel (Important)
    2021-12-06
    oval:org.opensuse.security:def:31313
    P
    Security update for ruby2.1 (Important)
    2021-12-01
    oval:org.opensuse.security:def:31705
    P
    Security update for postgresql, postgresql13, postgresql14 (Important)
    2021-11-20
    oval:org.opensuse.security:def:26162
    P
    Security update for pcre (Moderate)
    2021-11-10
    oval:org.opensuse.security:def:31697
    P
    Security update for opensc (Important)
    2021-10-29
    oval:org.opensuse.security:def:26156
    P
    Security update for open-lldp (Moderate)
    2021-10-26
    oval:org.opensuse.security:def:31283
    P
    Security update for apache2 (Important)
    2021-10-06
    oval:org.opensuse.security:def:26139
    P
    Security update for libvirt (Moderate)
    2021-10-04
    oval:org.opensuse.security:def:106542
    P
    perl-32bit-5.34.0-1.1 on GA media (Moderate)
    2021-10-01
    oval:org.opensuse.security:def:31272
    P
    Security update for the Linux Kernel (Live Patch 40 for SLE 12 SP3) (Important)
    2021-09-23
    oval:org.opensuse.security:def:32194
    P
    Security update for xen (Important)
    2021-09-23
    oval:org.opensuse.security:def:31271
    P
    Security update for the Linux Kernel (Live Patch 36 for SLE 12 SP3) (Important)
    2021-09-23
    oval:org.opensuse.security:def:32185
    P
    Security update for ghostscript (Critical)
    2021-09-21
    oval:org.opensuse.security:def:26130
    P
    Security update for ghostscript (Critical)
    2021-09-21
    oval:org.opensuse.security:def:32976
    P
    Security update for cpio (Important)
    2021-08-14
    oval:org.opensuse.security:def:26099
    P
    Security update for libsndfile (Critical)
    2021-08-05
    oval:org.opensuse.security:def:26098
    P
    Security update for webkit2gtk3 (Important)
    2021-08-03
    oval:org.opensuse.security:def:32145
    P
    Security update for the Linux Kernel (Live Patch 37 for SLE 12 SP3) (Important)
    2021-07-21
    oval:org.opensuse.security:def:26086
    P
    Security update for libsolv (Important)
    2021-06-28
    oval:org.opensuse.security:def:26072
    P
    Security update for caribou (Important)
    2021-06-10
    oval:org.opensuse.security:def:31638
    P
    Security update for caribou (Important)
    2021-06-10
    oval:org.opensuse.security:def:42672
    P
    perl-32bit-5.10.0-64.72.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:32937
    P
    Security update for MozillaFirefox (Important)
    2021-06-08
    oval:org.opensuse.security:def:36265
    P
    perl-32bit-5.10.0-64.72.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:36537
    P
    perl-base-32bit-5.10.0-64.72.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:31181
    P
    Security update for dhcp (Important)
    2021-06-01
    oval:org.opensuse.security:def:32091
    P
    Security update for python3 (Important)
    2021-05-17
    oval:org.opensuse.security:def:32089
    P
    Security update for samba (Important)
    2021-05-04
    oval:org.opensuse.security:def:26033
    P
    Security update for ImageMagick (Moderate)
    2021-04-20
    oval:org.opensuse.security:def:31743
    P
    Security update for python (Moderate)
    2021-03-16
    oval:org.opensuse.security:def:31732
    P
    Security update for krb5-appl (Important)
    2021-02-19
    oval:org.opensuse.security:def:31731
    P
    Security update for java-1_7_1-ibm (Important)
    2021-02-18
    oval:org.opensuse.security:def:26192
    P
    Security update for php72 (Important)
    2021-02-17
    oval:org.opensuse.security:def:32255
    P
    Security update for the Linux Kernel (Important)
    2021-02-12
    oval:org.opensuse.security:def:31725
    P
    Security update for openvswitch (Important)
    2021-02-12
    oval:org.opensuse.security:def:26087
    P
    Security update for sudo (Important)
    2021-01-26
    oval:org.opensuse.security:def:31357
    P
    Security update for MozillaFirefox (Important)
    2021-01-12
    oval:org.opensuse.security:def:32098
    P
    Security update for dovecot22 (Important)
    2021-01-04
    oval:org.opensuse.security:def:25984
    P
    Security update for cyrus-sasl (Important)
    2020-12-28
    oval:org.opensuse.security:def:31096
    P
    Security update for python (Important)
    2020-12-11
    oval:org.opensuse.security:def:31095
    P
    Security update for openssl (Important)
    2020-12-11
    oval:org.opensuse.security:def:31565
    P
    Security update for openssl (Important)
    2020-12-11
    oval:org.opensuse.security:def:35804
    P
    perl-32bit-5.10.0-64.55.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:42034
    P
    perl-32bit-5.10.0-64.47.8 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:36013
    P
    perl-32bit-5.10.0-64.67.52 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:35627
    P
    perl-32bit-5.10.0-64.47.8 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:25639
    P
    Security update for libqt5-qtimageformats (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31881
    P
    Security update for dnsmasq (Important)
    2020-12-01
    oval:org.opensuse.security:def:26546
    P
    findutils on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:33228
    P
    perl-32bit on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31479
    P
    Security update for python (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26018
    P
    Security update for freerdp (Important)
    2020-12-01
    oval:org.opensuse.security:def:26804
    P
    perl-HTML-Parser on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26803
    P
    perl-32bit on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25178
    P
    Security update for Mesa (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25780
    P
    Security update for python (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31986
    P
    Security update for java-1_7_1-ibm (Important)
    2020-12-01
    oval:org.opensuse.security:def:27228
    P
    libxcrypt on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31491
    P
    Security update for Python
    2020-12-01
    oval:org.opensuse.security:def:32397
    P
    Security update for unzip (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31915
    P
    Security update for gd (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25190
    P
    Security update for virglrenderer (Important)
    2020-12-01
    oval:org.opensuse.security:def:31405
    P
    Security update for perl-DBI (Important)
    2020-12-01
    oval:org.opensuse.security:def:25563
    P
    Security update for xrdp (Important)
    2020-12-01
    oval:org.opensuse.security:def:26391
    P
    Security update for MozillaThunderbird (Important)
    2020-12-01
    oval:org.opensuse.security:def:32485
    P
    PolicyKit on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32592
    P
    perl-32bit on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25382
    P
    Security update for squid (Critical)
    2020-12-01
    oval:org.opensuse.security:def:31549
    P
    Security update for screen (Low)
    2020-12-01
    oval:org.opensuse.security:def:25638
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:31846
    P
    Security update for clamav (Important)
    2020-12-01
    oval:org.opensuse.security:def:26493
    P
    Security update for phpMyAdmin (Important)
    2020-12-01
    oval:org.opensuse.security:def:26592
    P
    libneon27 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25520
    P
    Security update for krb5-appl (Important)
    2020-12-01
    oval:org.opensuse.security:def:31761
    P
    Security update for MozillaFirefox (Important)
    2020-12-01
    oval:org.opensuse.security:def:26338
    P
    Security update for Chromium (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25847
    P
    Security update for flash-player (Important)
    2020-12-01
    oval:org.opensuse.security:def:26818
    P
    rsyslog on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26290
    P
    Security update for ImageMagick (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25755
    P
    Security update for libreoffice (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31849
    P
    Security update for clamav (Important)
    2020-12-01
    oval:org.opensuse.security:def:27011
    P
    perl-32bit on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25354
    P
    Security update for mozilla-nspr, mozilla-nss (Important)
    2020-12-01
    oval:org.opensuse.security:def:25988
    P
    Security update for gd (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27500
    P
    libwebkit-1_0-2 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26428
    P
    Security update for redis (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25857
    P
    Security update for ImageMagick (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25366
    P
    Security update for ghostscript (Important)
    2020-12-01
    oval:org.opensuse.security:def:31581
    P
    Security update for tar (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32507
    P
    evolution-data-server on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25815
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:31949
    P
    Security update for grub2 (Important)
    2020-12-01
    oval:org.opensuse.security:def:26663
    P
    PolicyKit on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25910
    P
    Security update for gstreamer-0_10-plugins-base (Low)
    2020-12-01
    oval:org.opensuse.security:def:32768
    P
    perl-32bit on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25558
    P
    Security update for systemd (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26280
    P
    Security update for ImageMagick (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:33189
    P
    libupsclient1 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25890
    P
    Security update for php5 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26765
    P
    librsvg on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26768
    P
    libsnmp15-32bit on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31107
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:25696
    P
    Security update for sudo (Important)
    2020-12-01
    oval:org.opensuse.security:def:31937
    P
    Security update for glibc (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26590
    P
    libmusicbrainz4 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31480
    P
    Security update for python (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32341
    P
    Security update for spice (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31871
    P
    Security update for curl (Important)
    2020-12-01
    oval:org.opensuse.security:def:25179
    P
    Security update for qemu (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25931
    P
    Security update for libcares2 (Low)
    2020-12-01
    oval:org.opensuse.security:def:32025
    P
    Security update for kernel-source (Important)
    2020-12-01
    oval:org.opensuse.security:def:27263
    P
    perl-32bit on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25562
    P
    Security update for MozillaFirefox (Important)
    2020-12-01
    oval:org.opensuse.security:def:26240
    P
    Security update for gd (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32446
    P
    Security update for xen (Important)
    2020-12-01
    oval:org.opensuse.security:def:32553
    P
    libicu-32bit on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25254
    P
    Security update for squid (Important)
    2020-12-01
    oval:org.opensuse.security:def:31462
    P
    Security update for postgresql94 (Important)
    2020-12-01
    oval:org.opensuse.security:def:32299
    P
    Security update for python (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25574
    P
    Security update for MozillaFirefox (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31789
    P
    Security update for MozillaFirefox (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26444
    P
    Security update for mumble (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25954
    P
    Security update for libvirt (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25463
    P
    Security update for mailman (Important)
    2020-12-01
    oval:org.opensuse.security:def:26294
    P
    Security update for bluez (Important)
    2020-12-01
    oval:org.opensuse.security:def:25766
    P
    Security update for mariadb (Important)
    2020-12-01
    oval:org.opensuse.security:def:31933
    P
    Security update for glibc (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26532
    P
    cron on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26627
    P
    perl-32bit on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25604
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:31810
    P
    Security update for apache2 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26976
    P
    libtspi1 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25904
    P
    Security update for gegl (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26862
    P
    apache2 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26371
    P
    Security update for Chromium (Important)
    2020-12-01
    oval:org.opensuse.security:def:25808
    P
    Security update for LibreOffice (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32047
    P
    Security update for kvm (Important)
    2020-12-01
    oval:org.opensuse.security:def:25355
    P
    Security update for xen (Important)
    2020-12-01
    oval:org.opensuse.security:def:31489
    P
    Security update for python (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27535
    P
    perl-base-32bit on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25814
    P
    Security update for flash-player (Important)
    2020-12-01
    oval:org.opensuse.security:def:31817
    P
    Security update for atftp (Important)
    2020-12-01
    oval:org.opensuse.security:def:26512
    P
    Security update for pdns-recursor (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25896
    P
    Security update for gstreamer-0_10-plugins-bad (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32729
    P
    librpcsecgss on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25430
    P
    Security update for java-1_7_1-ibm (Important)
    2020-12-01
    oval:org.opensuse.security:def:26241
    P
    Security update for evolution (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32551
    P
    libexiv2-4 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25826
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:32041
    P
    Security update for krb5 (Important)
    2020-12-01
    oval:org.opensuse.security:def:26716
    P
    gvim on GA media (Moderate)
    2020-12-01
    oval:org.mitre.oval:def:17476
    P
    USN-552-1 -- perl vulnerability
    2014-07-21
    oval:org.mitre.oval:def:20027
    P
    DSA-1400-1 perl - arbitrary code execution
    2014-06-23
    oval:org.mitre.oval:def:22461
    P
    ELSA-2007:0966: perl security update (Important)
    2014-05-26
    oval:org.mitre.oval:def:10669
    V
    Buffer overflow in the polymorphic opcode support in the Regular Expression Engine (regcomp.c) in Perl 5.8 allows context-dependent attackers to execute arbitrary code by switching from byte to Unicode (UTF) characters in a regular expression.
    2013-04-29
    oval:com.redhat.rhsa:def:20070966
    P
    RHSA-2007:0966: perl security update (Important)
    2008-03-20
    oval:org.debian:def:1400
    V
    heap overflow
    2007-11-06
    BACK
    debian debian linux 3.1
    debian debian linux 4.0
    debian debian linux 4.0
    debian debian linux 4.0
    debian debian linux 4.0
    debian debian linux 4.0
    debian debian linux 4.0
    debian debian linux 4.0
    debian debian linux 4.0
    debian debian linux 4.0
    debian debian linux 4.0
    debian debian linux 4.0
    debian debian linux 4.0
    debian debian linux 4.0
    mandrakesoft mandrake linux 2007
    mandrakesoft mandrake linux 2007
    mandrakesoft mandrake linux 2007.1
    mandrakesoft mandrake linux 2007.1
    mandrakesoft mandrake linux 2008.0
    mandrakesoft mandrake linux 2008.0
    mandrakesoft mandrake linux corporate server 3.0
    mandrakesoft mandrake linux corporate server 3.0
    mandrakesoft mandrake linux corporate server 4.0
    mandrakesoft mandrake linux corporate server 4.0
    redhat enterprise linux 3.0
    redhat enterprise linux 3.0
    redhat enterprise linux 3.0
    redhat enterprise linux 4.0
    redhat enterprise linux 4.0
    redhat enterprise linux 4.0
    redhat enterprise linux 5.0
    redhat enterprise linux 5.0
    redhat enterprise linux desktop 3.0
    redhat enterprise linux desktop 4.0
    redhat linux advanced workstation 2.1
    redhat linux advanced workstation 2.1
    rpath rpath linux 1
    larry_wall perl 5.8.0
    larry_wall perl 5.8.1
    larry_wall perl 5.8.3
    larry_wall perl 5.8.4
    larry_wall perl 5.8.4.1
    larry_wall perl 5.8.4.2
    larry_wall perl 5.8.4.2.3
    larry_wall perl 5.8.4.3
    larry_wall perl 5.8.4.4
    larry_wall perl 5.8.4.5
    larry_wall perl 5.8.6
    mandrakesoft mandrake multi network firewall 2.0
    openpkg openpkg current
    redhat enterprise linux 1.0
    redhat certificate system 7.3
    suse suse linux *
    openpkg openpkg current
    gentoo linux *
    ibm aix 5.2
    redhat enterprise linux 3
    redhat enterprise linux 3
    redhat enterprise linux 3
    ibm aix 6.1
    redhat enterprise linux 3
    ibm aix 5.3
    mandrakesoft mandrake linux corporate server 3.0
    redhat enterprise linux 4
    redhat enterprise linux 4
    redhat enterprise linux 4
    redhat enterprise linux 4
    debian debian linux 3.1
    mandrakesoft mandrake multi network firewall 2.0
    sun solaris 10
    sun solaris 10
    canonical ubuntu 6.06
    mandrakesoft mandrake linux 2007
    mandrakesoft mandrake linux 2007
    mandrakesoft mandrake linux corporate server 4.0
    mandrakesoft mandrake linux corporate server 4.0
    mandrakesoft mandrake linux corporate server 3.0
    redhat enterprise linux 5
    mandrakesoft mandrake linux 2007.1
    mandrakesoft mandrake linux 2008.0
    debian debian linux 4.0
    canonical ubuntu 7.04
    redhat enterprise linux 5
    canonical ubuntu 7.10
    mandrakesoft mandrake linux 2008.0
    mandrakesoft mandrake linux 2007.1
    redhat enterprise linux 4.5.z
    redhat enterprise linux 4.5.z
    apple mac os x 10.4.11
    apple mac os x 10.5.1
    apple mac os x server 10.4.11
    apple mac os x server 10.5.1