CVE-2026-8507 – Crypt::OpenSSL::PKCS12 versions through 1.94 for Perl have out of bound (OOB) write flaws

CVE ID :CVE-2026-8507

Published : May 17, 2026, 7:16 p.m. | 1 hour, 47 minutes ago

Description :Crypt::OpenSSL::PKCS12 versions through 1.94 for Perl have out of bound (OOB) write flaws.

When parsing a PKCS12 file, with a >= 1 GiB OCTET STRING (or BIT STRING) attribute on a SAFEBAG, via info() or info_as_hash(), a heap-OOB-WRITE would be triggered which could have Remote Code Execution (RCE) potential.

Severity: 0.0 | NA

Visit the link for more details, such as CVSS details, affected products, timeline, and more… 

نوشته های مشابه