PT-2015-5716 · Philip Hazel+4 · Pcre+4
Published
2015-04-01
·
Updated
2024-06-15
·
CVE-2015-2326
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
PCRE versions prior to 8.37
Description
The issue allows context-dependent attackers to cause a denial of service (out-of-bounds read) via a regular expression with a group containing both a forward referencing subroutine call and a recursive back reference.
Recommendations
For versions prior to 8.37, update to version 8.37 or later to resolve the issue.
Exploit
Fix
DoS
Out of bounds Read
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Alt Linux
Mariadb Server
Pcre
Suse
Ubuntu