Ad

CVE-2006-10003

CRITICAL CVSS 3.1: 9.8 EPSS 0.03%
Updated Apr 04, 2026
Toddr
Parameter Value
CVSS 9.8 (CRITICAL)
Affected Versions before 2.48
Fixed In 2.48
Type CWE-193, CWE-122 (Heap-based Buffer Overflow)
Vendor Toddr
Public PoC No

XML::Parser versions through 2.47 for Perl has an off-by-one heap buffer overflow in st_serial_stack. In the case (stackptr == stacksize - 1), the stack will NOT be expanded. Then the new value will be written at location (++stackptr), which equals stacksize and therefore falls just outside the allocated buffer.

The bug can be observed when parsing an XML file with very deep element nesting

Attack Parameters

Attack Vector
Network
Can be exploited remotely
Attack Complexity
Low
Easy to exploit
Privileges Required
None
No privileges needed
User Interaction
None
No user interaction needed

Impact Assessment

Confidentiality
High
Complete data leak
Integrity
High
Complete data modification
Availability
High
Complete denial of service

CVSS Vector v3.1

Vulnerable Products 1

Configuration From (including) Up to (excluding)
Toddr Xml\
cpe:2.3:a:toddr:xml\:\:parser:*:*:*:*:*:perl:*:*
2.48