No, there is a bug in perl involving %n and wrapped-around integers that in theory allows buffer overrruns and execution of arbitrary code. Of course this is only exploitable if (like Webmin), a network or setuid program is stupid enough to allow the user to specify the 1st arg to printf