CVE-2007-1660

Description

From CVE.org

Perl-Compatible Regular Expression (PCRE) library before 7.0 does not properly calculate sizes for unspecified "multiple forms of character class", which triggers a buffer overflow that allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code.

Acknowledgements

Red Hat would like to thank Tavis Ormandy and Will Drewry for reporting this issue.

Frequently Asked Questions

Want to get errata notifications? Sign up here.