Advisories ยป MGASA-2015-0267

Updated pcre package fixes security vulnerability

Publication date: 05 Jul 2015
Type: security
Affected Mageia releases : 5
CVE: CVE-2015-5073

Description

PCRE library is prone to a vulnerability which leads to Heap Overflow.
During subpattern calculation of a malformed regular expression, an offset
that is used as an array index is fully controlled and can be large enough
so that unexpected heap memory regions are accessed (CVE-2015-5073).
                

References

SRPMS

5/core