Search CVE reports


Toggle filters

11 – 20 of 36 results


CVE-2022-1586

Low priority

Some fixes available 3 of 5

An out-of-bounds read vulnerability was discovered in the PCRE2 library in the compile_xclass_matchingpath() function of the pcre2_jit_compile.c file. This involves a unicode property matching issue in JIT-compiled...

1 affected package

pcre2

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pcre2 Not affected Not affected Fixed Fixed Fixed
Show less packages

CVE-2019-20454

Low priority
Vulnerable

An out-of-bounds read was discovered in PCRE before 10.34 when the pattern \X is JIT compiled and used to match specially crafted subjects in non-UTF mode. Applications that use PCRE to parse untrusted input may be vulnerable to...

1 affected package

pcre2

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pcre2 Not affected Not affected Not affected Not affected Vulnerable
Show less packages

CVE-2017-13846

Medium priority
Ignored

An issue was discovered in certain Apple products. macOS before 10.13.1 is affected. The issue involves the third-party "PCRE" product. Versions before 8.40 allow remote attackers to cause a denial of service (application crash)...

2 affected packages

pcre2, pcre3

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pcre2
pcre3
Show less packages

CVE-2017-8786

Negligible priority
Vulnerable

pcre2test.c in PCRE2 10.23 allows remote attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact via a crafted regular expression.

1 affected package

pcre2

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pcre2 Not affected Not affected Not affected Not affected Not affected
Show less packages

CVE-2017-8399

Medium priority
Ignored

PCRE2 before 10.30 has an out-of-bounds write caused by a stack-based buffer overflow in pcre2_match.c, related to a "pattern with very many captures."

1 affected package

pcre2

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pcre2 Not affected
Show less packages

CVE-2017-7186

Low priority

Some fixes available 1 of 6

libpcre1 in PCRE 8.40 and libpcre2 in PCRE2 10.23 allow remote attackers to cause a denial of service (segmentation violation for read access, and application crash) by triggering an invalid Unicode property lookup.

2 affected packages

pcre2, pcre3

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pcre2 Not affected Not affected Not affected Not affected Not affected
pcre3 Not in release Not affected Not affected Not affected Not affected
Show less packages

CVE-2016-3191

Medium priority

Some fixes available 2 of 5

The compile_branch function in pcre_compile.c in PCRE 8.x before 8.39 and pcre2_compile.c in PCRE2 before 10.22 mishandles patterns containing an (*ACCEPT) substring in conjunction with nested parentheses, which allows remote...

2 affected packages

pcre2, pcre3

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pcre2 Not affected
pcre3 Not affected
Show less packages

CVE-2016-1283

Medium priority

Some fixes available 1 of 5

The pcre_compile2 function in pcre_compile.c in PCRE 8.38 mishandles the /((?:F?+(?:^(?(R)a+\"){99}-))(?J)(?'R'(?'R'<((?'RR'(?'R'\){97)?J)?J)(?'R'(?'R'\){99|(:(?|(?'R')(\k'R')|((?'R')))H'R'R)(H'R))))))/ pattern and related...

2 affected packages

pcre2, pcre3

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pcre2 Not affected
pcre3 Not affected
Show less packages

CVE-2015-8395

Low priority

Some fixes available 1 of 2

PCRE before 8.38 mishandles certain references, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted regular expression, as demonstrated by a JavaScript RegExp object...

2 affected packages

pcre2, pcre3

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pcre2
pcre3
Show less packages

CVE-2015-8394

Low priority

Some fixes available 3 of 4

PCRE before 8.38 mishandles the (?(<digits>) and (?(R<digits>) conditions, which allows remote attackers to cause a denial of service (integer overflow) or possibly have unspecified other impact via a crafted regular expression,...

2 affected packages

pcre2, pcre3

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pcre2
pcre3
Show less packages