CVE-2020-11958
Summary
| CVE | CVE-2020-11958 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2020-04-21 01:15:00 UTC |
| Updated | 2023-01-27 18:38:00 UTC |
| Description | re2c 1.3 has a heap-based buffer overflow in Scanner::fill in parse/scanner.cc via a long lexeme. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| oss-security - Re: re2c: heap overflow in Scanner::fill (scanner.cc) |
MLIST |
www.openwall.com |
Mailing List, Third Party Advisory |
| re2c: heap overflow in Scanner::fill (scanner.cc) | agostino's blog |
MISC |
blogs.gentoo.org |
Third Party Advisory |
| USN-4338-1: re2c vulnerability | Ubuntu security notices |
UBUNTU |
usn.ubuntu.com |
Third Party Advisory |
| oss-security - re2c: heap overflow in Scanner::fill (scanner.cc) |
MISC |
www.openwall.com |
Mailing List, Third Party Advisory |
| USN-4338-2: re2c vulnerability | Ubuntu security notices |
UBUNTU |
usn.ubuntu.com |
|
| re2c: Buffer overflow (GLSA 202007-28) — Gentoo security |
GENTOO |
security.gentoo.org |
|
| Fix crash in lexer refill (reported by Agostino Sarubbo). · skvadrik/re2c@c4603ba · GitHub |
MISC |
github.com |
Patch, Third Party Advisory |
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 500598 Alpine Linux Security Update for re2c
- 504349 Alpine Linux Security Update for re2c