Heap-based buffer overflow in Perl-Compatible Regular Expression (PCRE) library before 7.3 allows context-dependent attackers to execute arbitrary code via a singleton Unicode sequence in a character class in a regex pattern, which is incorrectly optimized.
| Software | From | Fixed in |
|---|---|---|
| pcre / pcre | - | 6.1.x |
| pcre / pcre | - | 7.3.x |
| pcre / pcre | - | 6.0.x |