In uClibc 0.9.33.2, there is an out-of-bounds read in the getsubexp function in misc/regex/regexec.c when processing a crafted regular expression.
In uClibc 0.9.33.2, there is stack exhaustion (uncontrolled recursion) in the checkdstlimitscalcpos1 function in misc/regex/regexec.c when processing a crafted regular expression.
Integer signedness error in libc/string/arm/memset.S in uClibc and uClibc-ng before 1.0.16 allows context-dependent attackers to cause a denial of service (crash) via a negative length value to the memset function.