Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2015-2326

Опубликовано: 14 янв. 2020
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 4.3
CVSS3: 5.5

Описание

The pcre_compile2 function in PCRE before 8.37 allows context-dependent attackers to compile incorrect code and cause a denial of service (out-of-bounds read) via regular expression with a group containing both a forward referencing subroutine call and a recursive back reference, as demonstrated by "((?+1)(\1))/".

РелизСтатусПримечание
devel

not-affected

2:8.38-3
esm-infra-legacy/trusty

not-affected

1:8.31-2ubuntu2.1
lucid

ignored

end of life
precise

not-affected

8.12-4
trusty

released

1:8.31-2ubuntu2.1
trusty/esm

not-affected

1:8.31-2ubuntu2.1
upstream

needed

utopic

ignored

end of life
vivid

released

2:8.35-3.3ubuntu1.1
vivid/stable-phone-overlay

released

2:8.35-3.3ubuntu1.1

Показывать по

EPSS

Процентиль: 53%
0.00304
Низкий

4.3 Medium

CVSS2

5.5 Medium

CVSS3

Связанные уязвимости

redhat
около 10 лет назад

The pcre_compile2 function in PCRE before 8.37 allows context-dependent attackers to compile incorrect code and cause a denial of service (out-of-bounds read) via regular expression with a group containing both a forward referencing subroutine call and a recursive back reference, as demonstrated by "((?+1)(\1))/".

CVSS3: 5.5
nvd
больше 5 лет назад

The pcre_compile2 function in PCRE before 8.37 allows context-dependent attackers to compile incorrect code and cause a denial of service (out-of-bounds read) via regular expression with a group containing both a forward referencing subroutine call and a recursive back reference, as demonstrated by "((?+1)(\1))/".

CVSS3: 5.5
debian
больше 5 лет назад

The pcre_compile2 function in PCRE before 8.37 allows context-dependen ...

CVSS3: 5.5
github
около 3 лет назад

The pcre_compile2 function in PCRE before 8.37 allows context-dependent attackers to compile incorrect code and cause a denial of service (out-of-bounds read) via regular expression with a group containing both a forward referencing subroutine call and a recursive back reference, as demonstrated by "((?+1)(\1))/".

suse-cvrf
почти 10 лет назад

Security update for mariadb

EPSS

Процентиль: 53%
0.00304
Низкий

4.3 Medium

CVSS2

5.5 Medium

CVSS3