CVE-2013-7422 PUBLISHED

Integer underflow in regcomp.c in Perl before 5.20, as used in Apple OS X before 10.10.5 and other products, allows context-dependent attackers to execute arbitrary code or cause a denial of service (application crash) via a long digit string associated with an invalid backreference within a regular expression.

EPSS 0.75% · 73.0th percentile

Risk Scores

EPSS Score
0.75%
73.0th percentile

Affected Products

VendorProductVersions
Ubuntu:14.04:LTSperl0, 5.14.2-21build1, 5.18.1-4

Timeline

References

Open in Interactive Console →