← Back to CVE List
Vulnerability Intelligence Report

CVE-2020-10543

Perl before 5.30.3 on 32-bit platforms allows a heap-based buffer overflow because nested regular expression quantifiers have an integer overflow.

No Active Exploit Signals
CVSS Base Score
8.2
HIGH
EPSS Probability:11.33%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
Authentication
Weaponization
SSVC Action

Affected Products & Versions

Vendor Product Affected Versions
perl perl all
fedoraproject fedora 31
opensuse leap 15.1
oracle communications_billing_and_revenue_management 12.0.0.2.0, 12.0.0.3.0
oracle communications_diameter_signaling_router all
oracle communications_eagle_application_processor all
oracle communications_eagle_lnp_application_processor 10.1, 10.2, 46.7, 46.8, 46.9
oracle communications_lsms all
oracle communications_offline_mediation_controller 12.0.0.3.0
oracle communications_performance_intelligence_center all
oracle communications_pricing_design_center 12.0.0.3.0
oracle configuration_manager 12.1.2.0.8
oracle enterprise_manager_base_platform 13.4.0.0
oracle sd-wan_edge 8.2, 9.0, 9.1
oracle tekelec_platform_distribution all

References & Technical Advisories

No reference links found.

Threat Intelligence Signals

EPSS Score
11.334%

Identity & Timeline

StatusPUBLISHED
Assigning AuthorityMITRE Corporation · N/A · USA
Reserved2020-03-13T00:00:00
Published2020-06-05T13:17:49
Last Updated2024-08-04T11:06:09

LINK COPIED TO CLIPBOARD