Multiple Perl Implementation System Function Call Buffer Overflow Vulnerability
BID:10375
Info
Multiple Perl Implementation System Function Call Buffer Overflow Vulnerability
| Bugtraq ID: | 10375 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | May 18 2004 12:00AM |
| Updated: | May 18 2004 12:00AM |
| Credit: | Discovery of this vulnerability is credited to Oliver Karow. Matt Murphy independently discovered this issue. |
| Vulnerable: |
Redhat Cygwin 1.5.9 -1 Redhat Cygwin 1.5.8 -1 Redhat Cygwin 1.5.7 -1 Redhat Cygwin 1.5.6 -1 Redhat Cygwin 1.5.5 -1 Redhat Cygwin 1.5.4 -1 Redhat Cygwin 1.5.3 -1 Redhat Cygwin 1.5.2 -1 Redhat Cygwin 1.5.1 -1 Redhat Cygwin 1.5 -1 Activestate ActivePerl 5.8 Activestate ActivePerl 5.7.3 Activestate ActivePerl 5.7.2 Activestate ActivePerl 5.7.1 Activestate ActivePerl 5.6.3 Activestate ActivePerl 5.6.2 Activestate ActivePerl 5.6.1 .630 Activestate ActivePerl 5.6.1 |
| Not Vulnerable: | |
Discussion
Multiple Perl Implementation System Function Call Buffer Overflow Vulnerability
ActiveState Perl and Perl for cygwin are both reported to be prone to a buffer overflow vulnerability.
The issue is reported to exist due to a lack of sufficient bounds checking that is performed on data that is passed to a Perl system() function call. This vulnerability may permit an attacker to influence execution flow of a vulnerable Perl script to ultimately execute arbitrary code. Arbitrary code execution will occur in the context of the user who is running the malicious Perl script.
ActiveState Perl and Perl for cygwin are both reported to be prone to a buffer overflow vulnerability.
The issue is reported to exist due to a lack of sufficient bounds checking that is performed on data that is passed to a Perl system() function call. This vulnerability may permit an attacker to influence execution flow of a vulnerable Perl script to ultimately execute arbitrary code. Arbitrary code execution will occur in the context of the user who is running the malicious Perl script.
Exploit / POC
Solution / Fix
Multiple Perl Implementation System Function Call Buffer Overflow Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Multiple Perl Implementation System Function Call Buffer Overflow Vulnerability
References:
References:
- ActivePerl Homepage (Activestate)
- Re: Buffer Overflow in ActivePerl ? (Nick FitzGerald
) - RE: Re: Buffer Overflow in ActivePerl ? ("Bill Royds"
)