CVE-2012-5195: Perl

High severity, CVSS 7.5. EPSS: 4.9% chance of exploitation in the next 30 days.

Heap-based buffer overflow in the Perl_repeatcpy function in util.c in Perl 5.12.x before 5.12.5, 5.14.x before 5.14.3, and 5.15.x before 15.15.5 allows context-dependent attackers to cause a denial of service (memory consumption and crash) or possibly execute arbitrary code via the 'x' string repeat operator.

Affected products

  • Perl Perl: version 5.12.0 only; version 5.12.1 only; version 5.12.2 only; version 5.12.3 only; version 5.12.4 only; version 5.14.0 only; …

Published 2012-12-18. Last modified 2026-06-16.