Total vulnerabilities in the database
PCRE before 8.38 mishandles the interaction of lookbehind assertions and mutually recursive subpatterns, which allows remote attackers to cause a denial of service (buffer overflow) or possibly have unspecified other impact via a crafted regular expression, as demonstrated by a JavaScript RegExp object encountered by Konqueror.
Software | From | Fixed in |
---|---|---|
pcre / perl_compatible_regular_expression_library | - | 8.37.x |
fedoraproject / fedora | 22 | 22.x |
oracle / linux | 7 | 7.x |
php / php | 5.6.0 | 5.6.18 |
php / php | 7.0.0 | 7.0.3 |
php / php | 5.5.0 | 5.5.32 |