MDKSA-2007:211
- Nom du paquet
- pcre
- Date
- 2007-11-08
- Advisory ID
- MDKSA-2007:211
- Affected versions
- 2007.1 i586 , 2007.1 x86_64
Problem description
Multiple vulnerabilities were discovered by Tavis Ormandy and
Will Drewry in the way that pcre handled certain malformed regular
expressions. If an application linked against pcre, such as Konqueror,
parses a malicious regular expression, it could lead to the execution
of arbitrary code as the user running the application.
Updated packages have been patched to prevent this issue.
Updated packages
2007.1 i586
e3eadb5dc3ae91ffc735a0021bb4c3b8 2007.1/i586/libpcre-devel-7.3-0.1mdv2007.1.i586.rpm 8eee92b33ed6f6be95cae33249242dfa 2007.1/i586/libpcre0-7.3-0.1mdv2007.1.i586.rpm 42e1ac0e8188b5f142e645c1ff6bb44d 2007.1/i586/pcre-7.3-0.1mdv2007.1.i586.rpm a03dca7708aa437655a393b0fe66f3c0 2007.1/SRPMS/pcre-7.3-0.1mdv2007.1.src.rpm
2007.1 x86_64
370f8de2c9166883cbbcb2968b0575ec 2007.1/x86_64/lib64pcre-devel-7.3-0.1mdv2007.1.x86_64.rpm 306b2a144a25e1025d4ed02f3878b9dc 2007.1/x86_64/lib64pcre0-7.3-0.1mdv2007.1.x86_64.rpm 29b00561151987446eaaa3f0aaac5684 2007.1/x86_64/pcre-7.3-0.1mdv2007.1.x86_64.rpm a03dca7708aa437655a393b0fe66f3c0 2007.1/SRPMS/pcre-7.3-0.1mdv2007.1.src.rpm
References
- http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-4767
- http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-4766
- http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1662
- http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1661
- http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1660
- http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1659
- http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-7230
- http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-4768
