Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
pcre_jit_compile.c in PCRE 8.35 does not properly use table jumps to optimize nested alternatives, which allows remote attackers to cause a denial of service (stack memory corruption) or possibly have unspecified other impact via a crafted string, as demonstrated by packets encountered by Suricata during use of a regular expression in an Emerging Threats Open ruleset.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
PCRE 缓冲区溢出漏洞
Vulnerability Description
PCRE(Perl Compatible Regular Expressions)是软件开发者Philip Hazel所研发的一个使用C语言编写的开源正则表达式函数库。 PCRE 8.35版本的pcre_jit_compile.c文件中存在安全漏洞,该漏洞源于程序没有正确使用表单跳转优化嵌套的选项。远程攻击者可借助特制的字符串利用该漏洞造成拒绝服务(栈内存损坏)。
CVSS Information
N/A
Vulnerability Type
N/A