Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2005-0156

EPSS 0.39% · P60

Public Exploits 1

ExploitDB · 1 EDB-791 [local]
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2005-0156

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Buffer overflow in the PerlIO implementation in Perl 5.8.0, when installed with setuid support (sperl), allows local users to execute arbitrary code by setting the PERLIO_DEBUG variable and executing a Perl script whose full pathname contains a long directory tree.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Perl SuidPerl多个本地漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Perl是流行的跨平台编程语言。 部分Perl脚本在处理PERLIO_DEBUG变量时存在问题,本地攻击者可以利用这个漏洞破坏系统文件或进行缓冲区溢出攻击。 攻击者可以通过设置PERLIO_DEBUG环境变量和调用任意setuid-root perl脚本来覆盖任何文件,PERLIO_DEBUG指向的文件然后会被PERL调试消息所覆盖,这个问题不能精确控制文件内容,但可以破坏重要数据。 另外如果PERLIO_DEBUG设置,调用带超长路径的setuid-perl脚本,可导致缓冲区溢出,精心构建提交数据可能以
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2005-0156

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2005-0156

登录查看更多情报信息。

Same Patch Batch · n/a · 2005-02-07 · 10 CVEs total

CVE-2005-0155Perl SuidPerl缓存区溢出漏洞
CVE-2005-0233Opera Software Opera 设计错误漏洞
CVE-2005-0234Konqueror易受国际域名欺骗漏洞
CVE-2005-0235Konqueror易受国际域名欺骗漏洞
CVE-2005-0236Konqueror易受国际域名欺骗漏洞
CVE-2005-0237Konqueror易受国际域名欺骗漏洞
CVE-2005-0238Konqueror易受国际域名欺骗漏洞
CVE-2005-0239SquirrelMail S/MIME Plug-in远程命令执行漏洞
CVE-2005-0240IBM AIX多个设备管理实用程序本地格式化字符串漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2005-0156

No comments yet


Leave a comment