CVE-2018-18312: Buffer Overflow
Published Nov 5, 2018
·Updated
A flaw was found in Perl versions 5.18 through 5.26. A Heap-buffer-overflow write / regnode overrun
Other sources
Perl before 5.26.3 and 5.28.0 before 5.28.1 has a buffer overflow via a crafted regular expression that triggers invalid write operations.
— Launchpad
Affected Software
19 affected componentsFixes available
redhat/perl<5.26.3
5.26.3
redhat/perl<5.28.1
5.28.1
Perl Perl<5.26.3
Perl Perl>=5.28.0<5.28.1
Canonical Ubuntu Linux=14.04
Canonical Ubuntu Linux=16.04
Canonical Ubuntu Linux=18.04
Canonical Ubuntu Linux=18.10
Debian Debian Linux=9.0
redhat Enterprise Linux=6.0
redhat Enterprise Linux=7.0
redhat Enterprise Linux=7.4
redhat Enterprise Linux=7.5
redhat Enterprise Linux=7.6
NetApp E-Series SANtricity OS Controller>=11.0<=11.40
NetApp Snap Creator Framework
NetApp Snapcenter
NetApp Snapdrive Unix
debian/perl
5.32.1-4+deb11u35.32.1-4+deb11u45.36.0-7+deb12u35.36.0-7+deb12u25.40.1-65.40.1-7
Remediation
Patch Available
Event History
Dec 5, 2018
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
Description
Data Sourced
via NVD·10:29 PM
RemedyDescriptionSeverityWeaknessAffected Software
Feb 22, 2026
Data Sourced
via Ubuntu·06:09 PM
RemedyDescriptionSeverityAffected Software
Data Sourced
via Debian·06:10 PM
DescriptionAffected Software
Data Sourced
via Launchpad·06:10 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID of this vulnerability?
The vulnerability ID of this vulnerability is CVE-2018-18312.
2
What is the severity level of CVE-2018-18312?
The severity level of CVE-2018-18312 is critical.
3
What is the affected software for CVE-2018-18312?
The affected software for CVE-2018-18312 includes Perl versions before 5.26.3 and 5.28.0 before 5.28.1.
4
How can I fix CVE-2018-18312?
To fix CVE-2018-18312, it is recommended to update Perl to version 5.26.3 or 5.28.1.
5
Where can I find more information about CVE-2018-18312?
You can find more information about CVE-2018-18312 on the following references: [1] [2]