What is CVE-2026-15534?
CVE-2026-15534 is an out-of-bounds heap read and write vulnerability in Perl versions up to 5.45.1, occurring during regex matching due to an undersized superlinear cache in `S_regmatch`. This can lead to remote code execution or denial of service. Updating Perl to a patched version is strongly recommended.
Azərbaycanca: CVE-2026-15534, Perl-in 5.45.1-ə qədər olan versiyalarında `S_regmatch` funksiyasındakı qeyri-kafi ölçülü superlinear cache səbəbindən regex uyğunlaşdırması zamanı heap-də sərhəddən kənar oxuma və yazma zəifliyidir. Bu boşluq uzaqdan kod icrasına və ya xidmət rəddinə (DoS) səbəb ola bilər. Perl-i təhlükəsiz versiyaya yeniləmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-787
FAQ2
In which Perl function does the CVE-2026-15534 vulnerability exist?
The vulnerability exists in Perl's `S_regmatch` function.
Which versions of Perl are affected by CVE-2026-15534?
Perl versions up to 5.45.1 are affected.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.