CVE-2019-20454

Source
https://nvd.nist.gov/vuln/detail/CVE-2019-20454
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2019-20454.json
Related
Published
2020-02-14T14:15:10Z
Modified
2024-03-27T16:05:17Z
Details

An out-of-bounds read was discovered in PCRE before 10.34 when the pattern \X is JIT compiled and used to match specially crafted subjects in non-UTF mode. Applications that use PCRE to parse untrusted input may be vulnerable to this flaw, which would allow an attacker to crash the application. The flaw occurs in doextuninoutf in pcre2jit_compile.c.

References

Affected packages

Git / github.com/pcre2project/pcre2

Affected ranges

Type
GIT
Repo
https://github.com/pcre2project/pcre2
Events