Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-89160

Опубликовано: 11 сент. 2026
Источник: redhat
CVSS3: 3.7
EPSS Низкий

Описание

PCRE2 before 10.48 has a pcre2_match out-of-bounds read during the PCRE2_MATCH_INVALID_UTF matching of an invalid UTF subject.

A flaw was found in PCRE2, a library for processing regular expressions. A remote attacker could exploit this vulnerability by providing a specially crafted input that triggers an out-of-bounds read during pattern matching with invalid UTF (Unicode Transformation Format) characters. This could lead to a denial of service, making the affected system or application unavailable.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10bootcUnder investigation
Red Hat Enterprise Linux 10mariadb10.11Under investigation
Red Hat Enterprise Linux 10mariadb11.8Under investigation
Red Hat Enterprise Linux 10mingw-pcre2Under investigation
Red Hat Enterprise Linux 10pcre2Under investigation
Red Hat Enterprise Linux 7pcre2Under investigation
Red Hat Enterprise Linux 8mariadb:10.11/mariadbUnder investigation
Red Hat Enterprise Linux 8pcre2Under investigation
Red Hat Enterprise Linux 9bootcUnder investigation
Red Hat Enterprise Linux 9mariadb:10.11/mariadbUnder investigation

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-125
https://bugzilla.redhat.com/show_bug.cgi?id=2531745pcre2: PCRE2: Denial of Service via out-of-bounds read during invalid UTF matching

EPSS

Процентиль: 13%
0.00221
Низкий

3.7 Low

CVSS3

Связанные уязвимости

CVSS3: 3.7
ubuntu
2 дня назад

PCRE2 before 10.48 has a pcre2_match out-of-bounds read during the PCRE2_MATCH_INVALID_UTF matching of an invalid UTF subject.

CVSS3: 3.7
nvd
5 дней назад

PCRE2 before 10.48 has a pcre2_match out-of-bounds read during the PCRE2_MATCH_INVALID_UTF matching of an invalid UTF subject.

msrc
4 дня назад

PCRE2 before 10.48 has a pcre2_match out-of-bounds read during the PCRE2_MATCH_INVALID_UTF matching of an invalid UTF subject.

CVSS3: 3.7
debian
5 дней назад

PCRE2 before 10.48 has a pcre2_match out-of-bounds read during the PCR ...

CVSS3: 3.7
github
5 дней назад

PCRE2 before 10.48 has a pcre2_match out-of-bounds read during the PCRE2_MATCH_INVALID_UTF matching of an invalid UTF subject.

EPSS

Процентиль: 13%
0.00221
Низкий

3.7 Low

CVSS3