system environment/libraries

pcre - Perl-compatible regular expression library

Website: http://www.pcre.org/
License: BSD
Vendor: CentOS
Description:
Perl-compatible regular expression library.
PCRE has its own native API, but a set of "wrapper" functions that are based on
the POSIX API are also supplied in the library libpcreposix. Note that this
just provides a POSIX calling interface to PCRE: the regular expressions
themselves still follow Perl syntax and semantics. The header file
for the POSIX-style functions is called pcreposix.h.

Packages

pcre-8.32-15.el7_2.1.src [1.3 MiB] Changelog by Petr Pisar (2016-04-27):
- Fix CVE-2015-2328 (infinite recursion compiling pattern with recursive
  reference in a group with indefinite repeat) (bug #1330508)
- Fix CVE-2015-8385 (buffer overflow caused by named forward reference to
  duplicate group number) (bug #1330508)
- Fix CVE-2015-8386 (buffer overflow caused by lookbehind assertion)
  (bug #1330508)
- Fix CVE-2015-3217 (stack overflow caused by mishandled group empty match)
  (bug #1330508)
- Fix CVE-2015-5073 and CVE-2015-8388 (buffer overflow for forward reference
  within backward assertion with excess closing parenthesis) (bug #1330508)
- Fix CVE-2015-8391 (inefficient posix character class syntax check)
  (bug #1330508)
- Fix CVE-2016-3191 (workspace overflow for (*ACCEPT) with deeply nested
  parentheses) (bug #1330508)

Listing created by Repoview-0.6.6-4.el7