Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2007-1661

Опубликовано: 07 нояб. 2007
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 6.4

Описание

Perl-Compatible Regular Expression (PCRE) library before 7.3 backtracks too far when matching certain input bytes against some regex patterns in non-UTF-8 mode, which allows context-dependent attackers to obtain sensitive information or cause a denial of service (crash), as demonstrated by the "\X?\d" and "\P{L}?\d" patterns.

РелизСтатусПримечание
dapper

released

7.4-0ubuntu0.6.06.1
devel

not-affected

edgy

released

7.4-0ubuntu0.6.10.1
feisty

released

7.4-0ubuntu0.7.04.1
gutsy

released

7.4-0ubuntu0.7.10.1
upstream

released

7.3

Показывать по

EPSS

Процентиль: 85%
0.02716
Низкий

6.4 Medium

CVSS2

Связанные уязвимости

redhat
почти 18 лет назад

Perl-Compatible Regular Expression (PCRE) library before 7.3 backtracks too far when matching certain input bytes against some regex patterns in non-UTF-8 mode, which allows context-dependent attackers to obtain sensitive information or cause a denial of service (crash), as demonstrated by the "\X?\d" and "\P{L}?\d" patterns.

nvd
почти 18 лет назад

Perl-Compatible Regular Expression (PCRE) library before 7.3 backtracks too far when matching certain input bytes against some regex patterns in non-UTF-8 mode, which allows context-dependent attackers to obtain sensitive information or cause a denial of service (crash), as demonstrated by the "\X?\d" and "\P{L}?\d" patterns.

debian
почти 18 лет назад

Perl-Compatible Regular Expression (PCRE) library before 7.3 backtrack ...

github
больше 3 лет назад

Perl-Compatible Regular Expression (PCRE) library before 7.3 backtracks too far when matching certain input bytes against some regex patterns in non-UTF-8 mode, which allows context-dependent attackers to obtain sensitive information or cause a denial of service (crash), as demonstrated by the "\X?\d" and "\P{L}?\d" patterns.

fstec
больше 10 лет назад

Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации

EPSS

Процентиль: 85%
0.02716
Низкий

6.4 Medium

CVSS2