{"schema":"voidly-atlas-federal-record/v1","dataset":"nvd-cves","agency":"NIST","source":"NIST National Vulnerability Database","provider":"Voidly","license":"Source data is U.S. federal public domain (17 U.S.C. §105). Re-surfaced by Voidly under CC BY 4.0.","disclaimer":"This is the agency's own public-domain data, curated and made citable by Voidly. Voidly adds no independent claim — always verify against the linked canonical source.","generated_at":"2026-10-03T19:18:56.955Z","record":{"id":"CVE-2026-8507","cve_id":"CVE-2026-8507","published":"2026-05-17T19:16:24.590","last_modified":"2026-05-18T00:16:36.733","status":"Received","description":"Crypt::OpenSSL::PKCS12 versions through 1.94 for Perl have out-of-bounds (OOB) write flaws.\n\nWhen parsing a PKCS12 file, with a >= 1 GiB OCTET STRING (or BIT STRING) attribute on a SAFEBAG, via info() or info_as_hash(), a heap out-of-bounds write would be triggered with remote-code-execution potential (RCE) due to a signed integer overflow in the size calculation passed to Renew().","cvss_score":null,"cvss_severity":null,"cvss_vector":null,"cwes":"CWE-787","cpe_count":0,"source_url":"https://nvd.nist.gov/vuln/detail/CVE-2026-8507","voidly_url":"https://voidly.ai/atlas/federal/nvd-cves/CVE-2026-8507"},"citation":{"voidly_url":"https://voidly.ai/atlas/federal/nvd-cves/CVE-2026-8507","source_url":"https://nvd.nist.gov/vuln/detail/CVE-2026-8507","recommended":"CVE-2026-8507 — CVE. NIST, via Voidly Atlas — Surveillance & Digital-Rights Watch. Retrieved 2026-10-03, https://voidly.ai/atlas/federal/nvd-cves/CVE-2026-8507","ris":"TY  - DATA\nTI  - CVE-2026-8507 — CVE\nAU  - Voidly\nT2  - Voidly Atlas — Surveillance & Digital-Rights Watch\nPB  - Voidly\nPY  - 2026\nUR  - https://voidly.ai/atlas/federal/nvd-cves/CVE-2026-8507\nN1  - Source: NIST National Vulnerability Database, https://nvd.nist.gov/vuln/detail/CVE-2026-8507. Public domain (17 U.S.C. §105); re-surfaced under CC BY 4.0\nER  - ","apa":"Voidly. (2026). CVE-2026-8507 — CVE [NIST National Vulnerability Database]. Voidly Atlas. Retrieved 2026-10-03, from https://voidly.ai/atlas/federal/nvd-cves/CVE-2026-8507","bibtex":"@misc{voidly_nvd_cves_CVE20268507,\n  title        = {CVE-2026-8507 — CVE},\n  author       = {{Voidly}},\n  howpublished = {\\url{https://voidly.ai/atlas/federal/nvd-cves/CVE-2026-8507}},\n  note         = {Source: NIST National Vulnerability Database, https://nvd.nist.gov/vuln/detail/CVE-2026-8507. Public domain (17 U.S.C. §105); re-surfaced under CC BY 4.0},\n  urldate      = {2026-10-03},\n  year         = {2026}\n}"}}