First published: Wed Apr 29 2020(Updated: )
re2c before 2.0 has uncontrolled recursion that causes stack consumption in find_fixed_tags.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
re2c | <2.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-21232 is considered a high severity vulnerability due to its potential for causing denial of service through stack exhaustion.
To fix CVE-2018-21232, update to re2c version 2.0 or later, which addresses the uncontrolled recursion issue.
CVE-2018-21232 affects re2c versions prior to 2.0.
CVE-2018-21232 can be exploited through crafted input that triggers the uncontrolled recursion, leading to stack consumption.
No, if you are using re2c version 2.0 or later, you are not at risk from CVE-2018-21232.