Algorithmic complexity vulnerability in the regular expression parser in TCL before 8.4.17, as used in PostgreSQL 8.2 before 8.2.6, 8.1 before 8.1.11, 8.0 before 8.0.15, and 7.4 before 7.4.19, allows remote authenticated users to cause a denial of service (memory consumption) via a crafted "complex" regular expression with doubly-nested states.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2008-01-09T21:00:00
Updated: 2024-08-07T15:54:26.630Z
Reserved: 2007-11-21T00:00:00
Link: CVE-2007-6067
Vulnrichment
No data.
NVD
Status : Modified
Published: 2008-01-09T21:46:00.000
Modified: 2024-11-21T00:39:18.020
Link: CVE-2007-6067
Redhat