Oval Definition:oval:org.mitre.oval:tst:35598
Comment:pcre is earlier than 0:3.9-10.4
Type:rpminfo_testNamespace:linux
Check_Existence:at_least_one_existsCheck:at least one
State Operator:AND
References
Object:oval:org.mitre.oval:obj:14505
State:oval:org.mitre.oval:ste:9765
Referencing Definitions
Definition IDClassTitleLast Modified
oval:org.mitre.oval:def:10562
V
Perl-Compatible Regular Expression (PCRE) library before 7.0 does not properly calculate sizes for unspecified "multiple forms of character class", which triggers a buffer overflow that allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code.
2013-04-29
oval:org.mitre.oval:def:10810
V
Integer overflow in Perl-Compatible Regular Expression (PCRE) library before 6.7 might allow context-dependent attackers to execute arbitrary code via a regular expression that involves large (1) min, (2) max, or (3) duplength values that cause an incorrect length calculation and trigger a buffer overflow, a different vulnerability than CVE-2006-7227. NOTE: this issue was originally subsumed by CVE-2006-7224, but that CVE has been REJECTED and split.
2013-04-29
BACK