Lucene search

K
f5F5F5:K16983
HistoryJul 22, 2015 - 12:00 a.m.

K16983 : PCRE library vulnerability CVE-2015-2325

2015-07-2200:00:00
my.f5.com
17

7.7 High

AI Score

Confidence

Low

0.002 Low

EPSS

Percentile

54.5%

Security Advisory Description

PCRE library is prone to a heap overflow vulnerability. Due to insufficient bounds checking inside compile_branch(), the heap memory could be overflowed via a crafted regular expression. Since PCRE library is widely used, this vulnerability should affect many applications using it. An attacker may exploit this issue to execute arbitrary code in the context of the user running the affected application.
(
CVE-2015-2325
)
Impact
An attacker may be able to execute arbitrary code in the context of the user running the affected application when the vulnerability is exploited.