re2 为 Google 的 RE2 正则表达式引擎提供了 Node.js 绑定。在 1.25.2 版本之前,re2 将 参数与输入字符串的 UTF-8 字节长度进行校验,但在执行 、 、 、 和 操作时,却将其当作 UTF-16 代码单元偏移量使用。这种不一致性使得攻击者可以通过控制非 ASCII 输入字符串上的 值,触发越界堆内存读取(heap read)并导致进程崩溃,且该崩溃无法被捕获。在某些情况下,该漏洞还可能泄露有限的堆信息。此问题已在版本 1.25.2 中得到修复。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet