A vulnerability was found in perl 5.30.0 through 5.38.0. This issue occurs when a crafted regular expression is compiled by perl, which can allow an attacker controlled byte buffer overflow in a heap allocated buffer.
[
{
"signature_type": "Line",
"deprecated": false,
"target": {
"file": "regcomp.c"
},
"signature_version": "v1",
"source": "https://github.com/perl/perl5/commit/ff1f9f59360afeebd6f75ca1502f5c3ebf077da3",
"digest": {
"line_hashes": [
"293151830564086057975937478145914932521",
"143453480806131793255850162682972791677",
"49908078177243315762977250841678391040",
"42104507940110116460481038906207795532",
"292801548212068716341663467870433321819",
"212097729157823892197038680263482191794",
"144636467486871689450262130624485683886",
"335528991668785098518339371645954218045",
"299294200457540300074871374773975371398",
"167558216281262761149252772934203375680",
"228324759900382015466878919495742988297",
"74020277280142741159892597680004234788",
"113932126825401564749306971437333044127",
"247111147840606110998218129682026188629",
"138101284308869327359391341269680722528",
"8701125679094550235987128839545290268",
"115265112681309483517465494462799681859",
"84378174528897378644201700403584698336"
],
"threshold": 0.9
},
"id": "CVE-2023-47038-25a411b3"
},
{
"signature_type": "Line",
"deprecated": false,
"target": {
"file": "regcomp.c"
},
"signature_version": "v1",
"source": "https://github.com/perl/perl5/commit/12c313ce49b36160a7ca2e9b07ad5bd92ee4a010",
"digest": {
"line_hashes": [
"293151830564086057975937478145914932521",
"143453480806131793255850162682972791677",
"49908078177243315762977250841678391040",
"42104507940110116460481038906207795532",
"335342254380232159137657033313261520238",
"142206445844056675113002677752098323015",
"144636467486871689450262130624485683886",
"335528991668785098518339371645954218045",
"299294200457540300074871374773975371398",
"167558216281262761149252772934203375680",
"228324759900382015466878919495742988297",
"74020277280142741159892597680004234788",
"113932126825401564749306971437333044127",
"247111147840606110998218129682026188629",
"138101284308869327359391341269680722528",
"8701125679094550235987128839545290268",
"115265112681309483517465494462799681859",
"84378174528897378644201700403584698336"
],
"threshold": 0.9
},
"id": "CVE-2023-47038-693fbd38"
},
{
"signature_type": "Line",
"deprecated": false,
"target": {
"file": "regcomp.c"
},
"signature_version": "v1",
"source": "https://github.com/perl/perl5/commit/7047915eef37fccd93e7cd985c29fe6be54650b6",
"digest": {
"line_hashes": [
"293151830564086057975937478145914932521",
"143453480806131793255850162682972791677",
"49908078177243315762977250841678391040",
"42104507940110116460481038906207795532",
"335342254380232159137657033313261520238",
"142206445844056675113002677752098323015",
"144636467486871689450262130624485683886",
"335528991668785098518339371645954218045",
"299294200457540300074871374773975371398",
"167558216281262761149252772934203375680",
"228324759900382015466878919495742988297",
"74020277280142741159892597680004234788",
"113932126825401564749306971437333044127",
"247111147840606110998218129682026188629",
"138101284308869327359391341269680722528",
"8701125679094550235987128839545290268",
"115265112681309483517465494462799681859",
"84378174528897378644201700403584698336"
],
"threshold": 0.9
},
"id": "CVE-2023-47038-e5f4bbb5"
}
]