The gnu regular expression code in file 4.20 allows context-dependent attackers to cause a denial of service (CPU consumption) via a crafted document with a large number of line feed characters, which is not well handled by OS/2 REXX regular expressions that use wildcards, as originally reported for AMaViS.
Advisories
Source ID Title
Debian DSA Debian DSA DSA-1343-2 New file packages fix arbitrary code execution
EUVD EUVD EUVD-2007-2021 The gnu regular expression code in file 4.20 allows context-dependent attackers to cause a denial of service (CPU consumption) via a crafted document with a large number of line feed characters, which is not well handled by OS/2 REXX regular expressions that use wildcards, as originally reported for AMaViS.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-07T13:23:49.634Z

Reserved: 2007-04-13T00:00:00

Link: CVE-2007-2026

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2007-04-13T18:19:00.000

Modified: 2025-04-09T00:30:58.490

Link: CVE-2007-2026

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.