regcomp.c in Perl before 5.30.3 allows a buffer overflow via a crafted regular expression because of recursive Sstudychunk calls.
{ "vanir_signatures": [ { "target": { "file": "proto.h" }, "signature_type": "Line", "source": "https://github.com/perl/perl5/commit/66bbb51b93253a3f87d11c2695cfb7bdb782184a", "signature_version": "v1", "id": "CVE-2020-12723-30fdf23e", "digest": { "threshold": 0.9, "line_hashes": [ "203480624669949452854064380324064641591", "197404397339883460452743489996306892765", "227772099697521455351235460290785570795", "177464039865382705883514646952994090327" ] }, "deprecated": false }, { "target": { "file": "regcomp.c" }, "signature_type": "Line", "source": "https://github.com/perl/perl5/commit/66bbb51b93253a3f87d11c2695cfb7bdb782184a", "signature_version": "v1", "id": "CVE-2020-12723-4b7db348", "digest": { "threshold": 0.9, "line_hashes": [ "86729002274194721848295635510880594673", "50338106150766386916599814345799701985", "79086742097433530777949159829903515548", "91919910145126839322313728857788943518", "113693051183944561849282898407116671172", "934398555495277675317035884492299006", "75132135954387788385464350551128607280", "30788115625349314642282322227995092237", "37177730400415107919001170160678036879", "207913391674347557584764168464625754808", "46364228169500989316297610556360733760", "154276959630919186592528772802098970984", "117163812498306981020705188917771520990", "165720659799077351773800640139057944922", "331178633800588774310391246561179951801", "98646472573438194114891485827855305396", "192982412348401547594700223971309658122", "198254502299943946610477510469737855101", "298657138609563696969034890489016687697", "179671298669703609739948483522344575832", "333306211031181835453802255852000644770", "233729502324607438051166348801711581766", "324756619149788560515288451381919982060", "183172319025718846096452997976693660934", "46271910492363322828959267465135719799", "83886644861468909172979557401965789234", "291211845043901155658280668352937535059", "213740162296516068153928711186384571106", "34266944095099788419817366331526624954", "195450222414945165352582161245228199724", "207001824296767524241988280926020597546", "153489133722453405819475261158067996042", "54837616060613758376136845274284775298", "54148718801486750880052567108936229867", "284285293279325384195785837185722676745", "261627833436765289522498615584691087062", "246217586122231701907564418584610735718", "19242220974402008463580169966673288371", "17891263171430185797478689338139604629", "297858101622730264065343280948971102439", "234164378711633949668573487295420018576", "119800192812210550590552440643767006114", "312874892323332768049653867220428131645", "84827332098268082872893828697807143390", "175990339839249553815383147686822884470", "165556188077582076164433294546445218399", "12186019503836784423310297211620184527", "293473411344968163392604065260715322397", "35578501514073061669944238776026877854", "35894245716789059582141513483159214305", "42086450731299831071296552478331314230", "91820459734412285907834909471502942349", "332550115663557354488397720969983911714", "76307552322502836607877870849744231241", "261736692416481568696056645535802005173", "336933824459464709755500382227721156118", "229576656033728593086978876346898342351", "41168181207247070526083173381431038283", "209942156803575846738468066410740953746", "12222370678433929171880989006207472333", "158041142823723754061580368534459738325", "78382737532969913460405507365032130724", "203330177952758804962490320438983279091", "40748726925851656825659118898563617930", "12309099189148368286135973956895997778", "308455174348525779185568021129308204769", "321818764745084766665887293643191806910", "193454601511389872285572540105476368238", "269312777506174676093900473050553536501", "189704654022322496291017372874349031467", "80304965389711097290487695020239998567", "265751232484407818857289427501157621149", "74751184175713824569382804195260769709", "330543368975449986964714985596161037341", "301961183554164231537886415263063447085", "258373406107416406722995674739410359147", "51061519652560804099086890259407184591", "105505834546407291167822446875259493297" ] }, "deprecated": false }, { "target": { "function": "S_study_chunk", "file": "regcomp.c" }, "signature_type": "Function", "source": "https://github.com/perl/perl5/commit/66bbb51b93253a3f87d11c2695cfb7bdb782184a", "signature_version": "v1", "id": "CVE-2020-12723-a02e9079", "digest": { "function_hash": "16114805953285418720506228000153113859", "length": 38840.0 }, "deprecated": false } ] }