CVE-2017-7246 log
| Source |
|
| Severity | Low |
| Remote | Yes |
| Type | Arbitrary code execution |
| Description | A stack-based write buffer overflow has been found in libpcre <= 8.40, in the pcretest utility. It can lead to arbitrary code execution via a crafted expression passed to the pcretest command. |
| Group | Package | Affected | Fixed | Severity | Status | Ticket |
|---|---|---|---|---|---|---|
| AVG-222 | pcre | 8.40-1 | 8.41-1 | Medium | Fixed |
| Date | Advisory | Group | Package | Severity | Type |
|---|---|---|---|---|---|
| 18 Jul 2017 | ASA-201707-20 | AVG-222 | pcre | Medium | multiple issues |
| References |
|---|
https://blogs.gentoo.org/ago/2017/03/20/libpcre-two-stack-based-buffer-overflow-write-in-pcre32_copy_substring-pcre_get-c/ |
| Notes |
|---|
Setting to low since it's an issue in pcretest, so nobody should care too much. |