Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2008-2371

Heap-based buffer overflow in pcre_compile.c in the Perl-Compatible Regular Expression (PCRE) library 7.7 allows context-dependent attackers to cause a denial of service (crash) or possibly execute arbitrary code via a regular expression that begins with an option and contains multiple branches.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.034
EPSS Ranking 86.8%
CVSS Severity
CVSS v2 Score 7.5
References
Products affected by CVE-2008-2371
  • Pcre » Pcre » Version: 7.7
    cpe:2.3:a:pcre:pcre:7.7
  • Php » Php » Version: 5.2.0
    cpe:2.3:a:php:php:5.2.0
  • Php » Php » Version: 5.2.1
    cpe:2.3:a:php:php:5.2.1
  • Php » Php » Version: 5.2.2
    cpe:2.3:a:php:php:5.2.2
  • Php » Php » Version: 5.2.3
    cpe:2.3:a:php:php:5.2.3
  • Php » Php » Version: 5.2.4
    cpe:2.3:a:php:php:5.2.4
  • Php » Php » Version: 5.2.5
    cpe:2.3:a:php:php:5.2.5
  • Php » Php » Version: 5.2.6
    cpe:2.3:a:php:php:5.2.6
  • Php » Php » Version: 5.2.7
    cpe:2.3:a:php:php:5.2.7
  • Canonical » Ubuntu Linux » Version: 6.06
    cpe:2.3:o:canonical:ubuntu_linux:6.06
  • Canonical » Ubuntu Linux » Version: 7.04
    cpe:2.3:o:canonical:ubuntu_linux:7.04
  • Canonical » Ubuntu Linux » Version: 7.10
    cpe:2.3:o:canonical:ubuntu_linux:7.10
  • Canonical » Ubuntu Linux » Version: 8.04
    cpe:2.3:o:canonical:ubuntu_linux:8.04
  • Canonical » Ubuntu Linux » Version: 9.10
    cpe:2.3:o:canonical:ubuntu_linux:9.10
  • Debian » Debian Linux » Version: 4.0
    cpe:2.3:o:debian:debian_linux:4.0
  • Fedoraproject » Fedora » Version: 8
    cpe:2.3:o:fedoraproject:fedora:8
  • Fedoraproject » Fedora » Version: 9
    cpe:2.3:o:fedoraproject:fedora:9
  • Opensuse » Opensuse » Version: 10.3
    cpe:2.3:o:opensuse:opensuse:10.3


Contact Us

Shodan ® - All rights reserved