XML::Parser versions through 2.47 for Perl has an off-by-one heap buffer overflow in st_serial_stack (CVE-2006-10003) | HOL Guard CVE