What is CVE-2026-17510?
CVE-2026-17510 is a NULL pointer dereference vulnerability in the Crypt::OpenSSL::PKCS12 module for Perl versions prior to 1.98. The flaw occurs in the print_attribute function when processing a zero-length BMPSTRING attribute. Users should update to version 1.98 or later.
Azərbaycanca: CVE-2026-17510, Perl-in Crypt::OpenSSL::PKCS12 modulunda 1.98 versiyasından əvvəlki versiyalarda mövcud olan NULL pointer dereference zəifliyidir. print_attribute funksiyası sıfır uzunluqlu BMPSTRING atributunu emal edərkən "zero length" səbəbindən bu zəiflik yaranır. İstifadəçilər modulu 1.98 və ya daha yuxarı versiyaya yeniləməlidir.
Related CVEs
link basis: same weakness class CWE-476
FAQ2
Which Perl module is affected by CVE-2026-17510?
CVE-2026-17510 affects the Crypt::OpenSSL::PKCS12 module for versions prior to 1.98.
How can CVE-2026-17510 be mitigated?
Users should update the Crypt::OpenSSL::PKCS12 module to version 1.98 or later.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.