The _pcre32_xclass function in pcre_xclass.c in libpcre1 in PCRE 8.40 allows remote malicious users to cause a denial of service (invalid memory read) via a crafted file.
Synopsis
Important: Red Hat JBoss Core Services Apache HTTP Server 2429 security update
Type/Severity
Security Advisory: Important
Topic
Red Hat JBoss Core Services Pack Apache Server 2429 packages for Microsoft Windows and Oracle Solaris are now availableRed Hat Product Security has rated this release ...
Debian Bug report logs -
#858230
pcre3: CVE-2017-7186
Package:
src:pcre3;
Maintainer for src:pcre3 is Matthew Vernon <matthew@debianorg>;
Reported by: Salvatore Bonaccorso <carnil@debianorg>
Date: Mon, 20 Mar 2017 06:06:01 UTC
Severity: important
Tags: fixed-upstream, patch, security, upstream
Found in versions pc ...
Debian Bug report logs -
#858683
pcre3: CVE-2017-7244
Package:
src:pcre3;
Maintainer for src:pcre3 is Matthew Vernon <matthew@debianorg>;
Reported by: Salvatore Bonaccorso <carnil@debianorg>
Date: Sat, 25 Mar 2017 07:48:05 UTC
Severity: important
Tags: fixed-upstream, security, upstream
Found in version pcre3/2:8 ...
A stack-based read buffer overflow has been found in libpcre <= 840, in the pcretest utility It can lead to denial of service via a crafted expression passed to the pcretest command ...