CVE-2008-0674

EUVD-2008-0684
Buffer overflow in PCRE before 7.6 allows remote attackers to execute arbitrary code via a regular expression containing a character class with a large number of characters with Unicode code points greater than 255.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.5 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:P/I:P/A:P
Base Score
CVSS 3.x
EPSS Score
Percentile: 95%
Affected Products (NVD)
VendorProductVersion
pcrepcre
𝑥
≤ 7.5
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
pcre3
bookworm
2:8.39-15
fixed
bullseye
2:8.39-13
fixed
sid
2:8.39-15.1
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
pcre3
dapper
Fixed 7.4-0ubuntu0.6.06.2
released
edgy
Fixed 7.4-0ubuntu0.6.10.2
released
feisty
Fixed 7.4-0ubuntu0.7.04.2
released
gutsy
Fixed 7.4-0ubuntu0.7.10.2
released
References