First published: Mon Jun 15 2020(Updated: )
PCRE. Multiple issues were addressed by updating to version 8.44.
Credit: cve@mitre.org CVE-2019-20838 CVE-2020-14155 CVE-2019-20838 CVE-2020-14155 cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
IBM QRadar SIEM | <=7.5.0 GA | |
IBM QRadar SIEM | <=7.4.3 GA - 7.4.3 FP4 | |
IBM QRadar SIEM | <=7.3.3 GA - 7.3.3 FP10 | |
Pcre Pcre | <8.43 | |
Apple macOS | <11.0.1 | |
Apple macOS Big Sur | <11.2 | 11.2 |
Apple Catalina | ||
Apple Mojave | ||
Apple macOS Big Sur | <11.0.1 | 11.0.1 |
redhat/pcre | <8.43 | 8.43 |
Splunk Universal Forwarder | >=8.2.0<8.2.12 | |
Splunk Universal Forwarder | >=9.0.0<9.0.6 | |
Splunk Universal Forwarder | =9.1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2019-20838 is a vulnerability in PCRE that can be exploited by a remote attacker to cause a denial of service by crashing the application.
The severity of CVE-2019-20838 is high with a CVSS score of 7.5.
PCRE version 8.43 and earlier, Apple macOS Big Sur up to 11.2, Apple Catalina, Apple Mojave, IBM QRadar SIEM up to 7.5.0 GA, and IBM QRadar Vulnerability Manager up to 7.3.3 GA are affected by CVE-2019-20838.
Update to PCRE version 8.44, macOS Big Sur 11.0.1 or later, IBM QRadar SIEM 7.5.0 GA or later, or IBM QRadar Vulnerability Manager 7.3.3 GA or later to fix CVE-2019-20838.
You can find more information about CVE-2019-20838 on the following references: [Apple Support](https://support.apple.com/en-us/HT212147), [Red Hat Security](https://access.redhat.com/security/cve/CVE-2019-20454), and [Gentoo Bugs](https://bugs.gentoo.org/717920).