Known Vulnerabilities for Perl Compatible Regular Expression Library by Pcre
Listed below are 10 of the newest known vulnerabilities associated with "Perl Compatible Regular Expression Library" by "Pcre".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2016-1283 | The pcre_compile2 function in pcre_compile.c in PCRE 8.38 mishandles the /((?:F?+(?:^(?(R)a+\"){99}-))(?J)(?'R'(?'R'<((?'RR'(... | 9.8 - CRITICAL | 2016-01-03 | 2022-07-20 |
| CVE-2015-8387 | PCRE before 8.38 mishandles (?123) subroutine calls and related subroutine calls, which allows remote attackers to cause a de... | 7.3 - HIGH | 2015-12-02 | 2023-02-16 |
| CVE-2015-8386 | PCRE before 8.38 mishandles the interaction of lookbehind assertions and mutually recursive subpatterns, which allows remote ... | 9.8 - CRITICAL | 2015-12-02 | 2023-02-16 |
| CVE-2015-8385 | PCRE before 8.38 mishandles the /(?|(\k'Pm')|(?'Pm'))/ pattern and related patterns with certain forward references, which al... | 7.5 - HIGH | 2015-12-02 | 2019-12-27 |
| CVE-2015-8384 | PCRE before 8.38 mishandles the /(?J)(?'d'(?'d'\g{d}))/ pattern and related patterns with certain recursive back references, ... | 7.5 - HIGH | 2015-12-02 | 2018-01-05 |
| CVE-2015-8383 | PCRE before 8.38 mishandles certain repeated conditional groups, which allows remote attackers to cause a denial of service (... | 9.8 - CRITICAL | 2015-12-02 | 2023-02-16 |
| CVE-2015-8382 | The match function in pcre_exec.c in PCRE before 8.37 mishandles the /(?:((abcd))|(((?:(?:(?:(?:abc|(?:abcdef))))b)abcdefghi)... | 6.4 - MEDIUM | 2015-12-02 | 2023-11-07 |
| CVE-2015-8381 | The compile_regex function in pcre_compile.c in PCRE before 8.38 and pcre2_compile.c in PCRE2 before 10.2x mishandles the /(?... | 7.5 - HIGH | 2015-12-02 | 2018-01-05 |
| CVE-2015-8380 | The pcre_exec function in pcre_exec.c in PCRE before 8.38 mishandles a // pattern with a \01 string, which allows remote atta... | 7.5 - HIGH | 2015-12-02 | 2017-07-01 |
| CVE-2015-2327 | PCRE before 8.36 mishandles the /(((a\2)|(a*)\g<-1>))*/ pattern and related patterns with certain internal recursive back ref... | 7.5 - HIGH | 2015-12-02 | 2018-01-05 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Pcre | Perl Compatible Regular Expression Library | 8.38 | All | All | All |
| Application | Pcre | Perl Compatible Regular Expression Library | 8.37 | All | All | All |
| Application | Pcre | Perl Compatible Regular Expression Library | 8.36 | All | All | All |