Heap-based buffer overflow in PCRE 8.34 through 8.37 and PCRE2 10.10 allows remote attackers to execute arbitrary code via a crafted regular expression, as demonstrated by /^(?P=B)((?P=B)(?J:(?P<B>c)(?P<B>a(?P=B)))>WGXCREDITS)/, a different vulnerability than CVE-2015-8384.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: redhat
Published: 2016-12-13T16:00:00
Updated: 2024-08-06T05:39:31.991Z
Reserved: 2015-04-10T00:00:00
Link: CVE-2015-3210
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2016-12-13T16:59:00.187
Modified: 2023-12-20T18:28:46.977
Link: CVE-2015-3210
Redhat