PCRE 'pcre _ exec. c' Heap Buffer Overflow Vulnerability
Release date:
Updated on:
Affected Systems:
PCRE 8.36
Description:
Bugtraq id: 71206
The PCRE (Perl Compatible with regular expressions) library is an open-source software that supports regular expressions.
A heap buffer overflow vulnerability exists in PCRE 8.36 and other versions. Successful exploitation allows attackers to execute arbitrary code in the context of the affected application.
<* Source: Michelin Spagnuolo
*>
Suggestion:
Vendor patch:
PCRE
----
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://www.pcre.org/
Compile the source code on CentOS 5/RedHat 5 and Install pcre | Install pcre on CentOS 5/Redhat 5
Overview of Regular Expression Library pcre
Pcre function details
Compile and install Nginx and pcre
Install and configure Nginx + pcre + php-fpm in CentOS 6.4
PCRE details: click here
PCRE: click here
This article permanently updates the link address: