CVE-2026-8507 – Crypt::OpenSSL::PKCS12 versions through 1.94 for Perl have out of bound (OOB) write flaws
CVE ID :CVE-2026-8507
Published : May 17, 2026, 7:16 p.m. | 1 hour, 47 minutes ago
Description :Crypt::OpenSSL::PKCS12 versions through 1.94 for Perl have out of bound (OOB) write flaws.
When parsing a PKCS12 file, with a >= 1 GiB OCTET STRING (or BIT STRING) attribute on a SAFEBAG, via info() or info_as_hash(), a heap-OOB-WRITE would be triggered which could have Remote Code Execution (RCE) potential.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more…