[pcre-dev] [Bug 1591] PCRE Library Heap Overflow Vulnerabili…

Startseite
Nachricht löschen
Autor: secresearch
Datum:  
To: pcre-dev
Betreff: [pcre-dev] [Bug 1591] PCRE Library Heap Overflow Vulnerability
------- You are receiving this mail because: -------
You are on the CC list for the bug.

http://bugs.exim.org/show_bug.cgi?id=1591




--- Comment #4 from secresearch <secresearch@???>  2015-02-28 18:26:53 ---
I tried to test the PoC "((?2){0,1999}())?" in pcretest.exe (version 8.36 from
http://www.rexegg.com/pcregrep-pcretest.html), it can cause the pcretest.exe
crash, the crash info attached.    


Test Platform: windows 8.1


--
Configure bugmail: http://bugs.exim.org/userprefs.cgi?tab=email