Oval Definition:oval:com.ubuntu.artful:def:20161283000
Revision Date:2016-01-02Version:1
Title:CVE-2016-1283 on Ubuntu 17.10 (artful) - medium.
Description:The pcre_compile2 function in pcre_compile.c in PCRE 8.38 mishandles the /((?:F?+(?:^(?(R)a+\"){99}-))(?J)(?'R'(?'R'<((?'RR'(?'R'\){97)?J)?J)(?'R'(?'R'\){99|(:(?|(?'R')(\k'R')|((?'R')))H'R'R)(H'R))))))/ pattern and related patterns with named subgroups, which allows remote attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact via a crafted regular expression, as demonstrated by a JavaScript RegExp object encountered by Konqueror.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2016-1283
Platform(s):Ubuntu 17.10
Product(s):
Definition Synopsis
  • Ubuntu 17.10 (artful) is installed.
  • AND Package Information
  • The vulnerability of the 'pcre2' package in artful is not known (status: 'needs-triage'). It is pending evaluation.
  • OR NOT While related to the CVE in some way, the 'pcre3' package in artful is not affected (note: '2:8.38-3.1').
  • BACK