Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An out-of-bounds read vulnerability was discovered in the PCRE2 library in the compile_xclass_matchingpath() function of the pcre2_jit_compile.c file. This involves a unicode property matching issue in JIT-compiled regular expressions. The issue occurs because the character was not fully read in case-less matching within JIT.
CVSS Information
N/A
Vulnerability Type
跨界内存读
Vulnerability Title
PCRE 缓冲区错误漏洞
Vulnerability Description
PCRE是Philip Hazel个人开发者的一款使用C语言编写的开源正则表达式函数库。 PCRE 存在安全漏洞。攻击者利用该漏洞通过 pcre2_jit_compile.c 中的 compile_xclass_matchingpath 强制读取 PCRE 的无效内存地址,以触发拒绝服务或获取敏感信息。
CVSS Information
N/A
Vulnerability Type
N/A