Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7948-p5vf-r2m4

Опубликовано: 22 фев. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 1.9
CVSS3: 3.3

Описание

A flaw has been found in skvadrik re2c up to 4.4. Impacted is the function check_and_merge_special_rules of the file src/parse/ast.cc. This manipulation causes null pointer dereference. The attack can only be executed locally. The exploit has been published and may be used. Patch name: febeb977936f9519a25d9fbd10ff8256358cdb97. It is suggested to install a patch to address this issue.

A flaw has been found in skvadrik re2c up to 4.4. Impacted is the function check_and_merge_special_rules of the file src/parse/ast.cc. This manipulation causes null pointer dereference. The attack can only be executed locally. The exploit has been published and may be used. Patch name: febeb977936f9519a25d9fbd10ff8256358cdb97. It is suggested to install a patch to address this issue.

EPSS

Процентиль: 4%
0.00017
Низкий

1.9 Low

CVSS4

3.3 Low

CVSS3

Дефекты

CWE-404

Связанные уязвимости

CVSS3: 3.3
ubuntu
около 1 месяца назад

A flaw has been found in skvadrik re2c up to 4.4. Impacted is the function check_and_merge_special_rules of the file src/parse/ast.cc. This manipulation causes null pointer dereference. The attack can only be executed locally. The exploit has been published and may be used. Patch name: febeb977936f9519a25d9fbd10ff8256358cdb97. It is suggested to install a patch to address this issue.

CVSS3: 3.3
redhat
около 1 месяца назад

A flaw has been found in skvadrik re2c up to 4.4. Impacted is the function check_and_merge_special_rules of the file src/parse/ast.cc. This manipulation causes null pointer dereference. The attack can only be executed locally. The exploit has been published and may be used. Patch name: febeb977936f9519a25d9fbd10ff8256358cdb97. It is suggested to install a patch to address this issue.

CVSS3: 3.3
nvd
около 1 месяца назад

A flaw has been found in skvadrik re2c up to 4.4. Impacted is the function check_and_merge_special_rules of the file src/parse/ast.cc. This manipulation causes null pointer dereference. The attack can only be executed locally. The exploit has been published and may be used. Patch name: febeb977936f9519a25d9fbd10ff8256358cdb97. It is suggested to install a patch to address this issue.

CVSS3: 3.3
debian
около 1 месяца назад

A flaw has been found in skvadrik re2c up to 4.4. Impacted is the func ...

EPSS

Процентиль: 4%
0.00017
Низкий

1.9 Low

CVSS4

3.3 Low

CVSS3

Дефекты

CWE-404