Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:27606
HistoryOct 18, 2020 - 1:51 a.m.

Remote Code Execution (RCE)

2020-10-1801:51:29
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
16
rce
oniguruma
buffer overflow
regular expression
compilation

EPSS

0.002

Percentile

64.3%

oniguruma is vulnerable to remote code execution (RCE). The vulnerability exists as a buffer overflow can occur through a regular expression for compilation in concat_opt_exact_str in src/regcomp.c.