CVE-2022-23901: Critical severity re2c vulnerability
Published Mar 29, 2022
·Updated
A stack overflow re2c 2.2 exists due to infinite recursion issues in src/dfa/deadrules.cc.
Affected Software
1 affected component
re2c re2c=2.2
Remediation
Patch Available
Event History
Mar 29, 2022
CVE Published
via MITRE·11:12 AM
Data Sourced
via MITRE·11:12 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2022-23901?
CVE-2022-23901 is considered a high-severity vulnerability due to its potential to cause a stack overflow.
2
How do I fix CVE-2022-23901?
To mitigate CVE-2022-23901, upgrade to the latest version of re2c that resolves the infinite recursion vulnerability.
3
Which versions of re2c are affected by CVE-2022-23901?
CVE-2022-23901 specifically affects re2c version 2.2.
4
What kind of vulnerability is CVE-2022-23901?
CVE-2022-23901 is classified as a stack overflow vulnerability stemming from infinite recursion in the code.
5
Where can I find more information about CVE-2022-23901?
Information about CVE-2022-23901 can be found in the issue tracker on the re2c GitHub repository.