toddr YAML::Syck是toddr个人开发者的Perl语言模块,用于解析和生成YAML格式数据。 toddr YAML::Syck 1.47之前版本存在缓冲区错误漏洞,该漏洞源于在newline_len函数中未对换行符扫描进行边界检查,导致越界读取。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| TODDR | YAML::Syck | < 1.47 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| TODDR | YAML::Syck | 0 ~ 1.47 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-13713 | YAML::Syck versions before 1.47 for Perl allow a use-after-free and double-free via an anc | |
| CVE-2026-57075 | YAML::Syck versions before 1.47 for Perl allow an out-of-bounds read via a signed-char loo | |
| CVE-2026-57076 | YAML::Syck versions before 1.47 for Perl allow a heap use-after-free via an anchor name re |
No comments yet