Perl-Compatible Regular Expression (PCRE) library before 6.7 does not properly calculate the compiled memory allocation for regular expressions that involve a quantified "subpattern containing a named recursion or subroutine reference," which allows context-dependent attackers to cause a denial of service (error or crash).
References
Configurations
History
No history.
Information
Published : 2007-12-03 20:46
Updated : 2024-02-28 11:01
NVD link : CVE-2006-7226
Mitre link : CVE-2006-7226
CVE.ORG link : CVE-2006-7226
JSON object : View
Products Affected
redhat
- enterprise_linux_desktop
- enterprise_linux
CWE