Back

CRITICAL

Crypt::OpenSSL::PKCS12 versions before 1.96 for Perl permits a heap OOB read in print_attribute UTF8STRING path

Published Jun 20, 2026

Description

Crypt::OpenSSL::PKCS12 versions before 1.96 for Perl permits a heap OOB read in print_attribute UTF8STRING path.

print_attribute() copies a UTF8STRING ASN.1 attribute value into a heap buffer sized exactly to its declared length via strncpy, leaving no NUL terminator. Downstream callers run strlen() on the result and pass the inflated length to newSVpvn(), copying attacker-influenced adjacent heap bytes into a Perl scalar.

Affected products

Remediation

Vendor solution

Upgrade to version 1.96 or apply the linked patch.

References (4)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner CPANSec
Published Jun 20, 2026
Updated Jun 22, 2026
Reserved May 22, 2026
CISA Vulnrichment
Updated Jun 22, 2026
NVD
Status Deferred
Modified Jun 22, 2026
Red Hat
Severity n/a
Public date n/a
ENISA EUVD
Assigner CPANSec
Published Jun 20, 2026
Updated Jun 22, 2026
Exploited since n/a
EUVD-2026-38103