CVE Database
/

CVE-2006-7227

Back to search

CVE-2006-7227

Published: Nov 14, 2007

Modified: Aug 7, 2024

PUBLISHED

Description

Integer overflow in Perl-Compatible Regular Expression (PCRE) library before 6.7 allows context-dependent attackers to execute arbitrary code via a regular expression containing a large number of named subpatterns (name_count) or long subpattern names (max_name_size), which triggers a buffer overflow. NOTE: this issue was originally subsumed by CVE-2006-7224, but that CVE has been REJECTED and split.

VendorProductVersions

n/a

n/a

affected
n/a

References

30219
third-party-advisory
x_refsource_SECUNIA
GLSA-200711-30
vendor-advisory
x_refsource_GENTOO
oval:org.mitre.oval:def:10408
vdb-entry
signature
x_refsource_OVAL
MDVSA-2008:030
vendor-advisory
x_refsource_MANDRIVA
DSA-1570
vendor-advisory
x_refsource_DEBIAN
SUSE-SA:2008:004
vendor-advisory
x_refsource_SUSE
28658
third-party-advisory
x_refsource_SECUNIA
27773
third-party-advisory
x_refsource_SECUNIA
28406
third-party-advisory
x_refsource_SECUNIA
26462
vdb-entry
x_refsource_BID
GLSA-200805-11
vendor-advisory
x_refsource_GENTOO
RHSA-2007:1052
vendor-advisory
x_refsource_REDHAT
27741
third-party-advisory
x_refsource_SECUNIA
SUSE-SA:2007:062
vendor-advisory
x_refsource_SUSE
30155
third-party-advisory
x_refsource_SECUNIA
27869
third-party-advisory
x_refsource_SECUNIA
28720
third-party-advisory
x_refsource_SECUNIA
GLSA-200801-02
vendor-advisory
x_refsource_GENTOO
27582
third-party-advisory
x_refsource_SECUNIA
GLSA-200801-19
vendor-advisory
x_refsource_GENTOO
GLSA-200801-18
vendor-advisory
x_refsource_GENTOO
28414
third-party-advisory
x_refsource_SECUNIA
30106
third-party-advisory
x_refsource_SECUNIA
28714
third-party-advisory
x_refsource_SECUNIA

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now