Crypt::NaCl::Sodium versions through 2.001 for Perl has an integer overflow flaw on 32-bit systems.
Sodium.xs casts a STRLEN (size_t) to unsigned long long when passing a length pointer to libsodium functions. On 32-bit systems size_t is typically 32-bits while an unsigned long long is at least 64-bits.
References
Configurations
History
No history.
Information
Published : 2026-02-23 00:15
Updated : 2026-03-04 02:23
NVD link : CVE-2026-2588
Mitre link : CVE-2026-2588
CVE.ORG link : CVE-2026-2588
JSON object : View
Products Affected
timlegge
- crypt\
CWE
CWE-190
Integer Overflow or Wraparound
