Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Mark Daniel

#39955of 53,632
6.8Total CVSS
Vulnerabilities · 1
PT-2008-2628
6.8
2008-04-17
Philip Hazel · Pcre · CVE-2008-1026
**Name of the Vulnerable Software and Affected Versions** Safari versions prior to 3.1.1 **Description** The issue is related to an integer overflow in the PCRE regular expression compiler, which can be exploited by remote attackers to execute arbitrary code. This is achieved through a regular expression with large, nested repetition counts, triggering a heap-based buffer overflow. **Recommendations** For versions prior to 3.1.1, update to version 3.1.1 or later to resolve the issue.