Updated pcre package fixes security vulnerability
Publication date: 05 Jul 2015Modification date: 09 Jul 2015
Type: security
Affected Mageia releases : 5
CVE: CVE-2015-5073
Description
PCRE library is prone to a vulnerability which leads to Heap Overflow.
During subpattern calculation of a malformed regular expression, an offset
that is used as an array index is fully controlled and can be large enough
so that unexpected heap memory regions are accessed (CVE-2015-5073).
References
SRPMS
5/core
- pcre-8.37-2.1.mga5