CVE-2015-8393
02.12.2015, 01:59
pcregrep in PCRE before 8.38 mishandles the -q option for binary files, which might allow remote attackers to obtain sensitive information via a crafted file, as demonstrated by a CGI script that sends stdout data to a client.Enginsight
Vendor | Product | Version |
---|---|---|
pcre | perl_compatible_regular_expression_library | 𝑥 ≤ 8.37 |
php | php | 5.5.0 ≤ 𝑥 < 5.5.32 |
php | php | 5.6.0 ≤ 𝑥 < 5.6.18 |
php | php | 7.0.0 ≤ 𝑥 < 7.0.3 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Common Weakness Enumeration
References