Unallocated Space Write Vulnerability in Perl's S_parse_uniprop_string

Unallocated Space Write Vulnerability in Perl's S_parse_uniprop_string

CVE-2023-47100 · CRITICAL Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In Perl before 5.38.2, S_parse_uniprop_string in regcomp.c can write to unallocated space because a property name associated with a \p{...} regular expression construct is mishandled. The earliest affected version is 5.30.0.

Learn more about our Web Application Penetration Testing UK.