First published: Wed Jan 16 2008(Updated: )
Heap-based buffer overflow in the doInterval function in regexcmp.cpp in libicu in International Components for Unicode (ICU) 3.8.1 and earlier allows context-dependent attackers to cause a denial of service (memory consumption) and possibly have unspecified other impact via a regular expression that writes a large amount of data to the backtracking stack. NOTE: some of these details are obtained from third party information.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Icu-project International Components For Unicode | <=3.8.1 | |
redhat/3.8 | <5. | 5. |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.