CVE-2017-20230

Storable versions before 3.05 for Perl has a stack overflow. The retrieve_hook function stored the length of the class name into a signed integer but in read operations treated the length as unsigned. This allowed an attacker to craft data that could trigger the overflow.
Configurations

Configuration 1 (hide)

cpe:2.3:a:nwclark:storable:*:*:*:*:*:perl:*:*

History

No history.

Information

Published : 2026-04-21 16:16

Updated : 2026-06-17 01:15


NVD link : CVE-2017-20230

Mitre link : CVE-2017-20230

CVE.ORG link : CVE-2017-20230


JSON object : View

Products Affected

nwclark

  • storable
CWE
CWE-121

Stack-based Buffer Overflow