Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2019-20838

Опубликовано: 15 июн. 2020
Источник: debian

Описание

libpcre in PCRE before 8.43 allows a subject buffer over-read in JIT when UTF is disabled, and \X or \R has more than one fixed quantifier, a related issue to CVE-2019-20454.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
pcre3removedpackage

Примечания

  • Fixed by: https://vcs.pcre.org/pcre?view=revision&revision=1740 (8.43)

  • Only an issue when UTF support disabled

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 5 лет назад

libpcre in PCRE before 8.43 allows a subject buffer over-read in JIT when UTF is disabled, and \X or \R has more than one fixed quantifier, a related issue to CVE-2019-20454.

CVSS3: 7.5
redhat
больше 5 лет назад

libpcre in PCRE before 8.43 allows a subject buffer over-read in JIT when UTF is disabled, and \X or \R has more than one fixed quantifier, a related issue to CVE-2019-20454.

CVSS3: 7.5
nvd
больше 5 лет назад

libpcre in PCRE before 8.43 allows a subject buffer over-read in JIT when UTF is disabled, and \X or \R has more than one fixed quantifier, a related issue to CVE-2019-20454.

CVSS3: 7.5
msrc
больше 5 лет назад

libpcre in PCRE before 8.43 allows a subject buffer over-read in JIT when UTF is disabled and \X or \R has more than one fixed quantifier a related issue to CVE-2019-20454.

CVSS3: 7.5
github
больше 3 лет назад

libpcre in PCRE before 8.43 allows a subject buffer over-read in JIT when UTF is disabled, and \X or \R has more than one fixed quantifier, a related issue to CVE-2019-20454.