CVE-2017-11164
NONE EPSS 86.1%
Published Jul 11, 20178y ago · Modified Jun 17, 20262w ago
Published Jul 11, 2017 8y ago
Last Modified Jun 17, 2026 2w ago
Description
In PCRE 8.41, the OP_KETRMAX feature in the match function in pcre_exec.c allows stack exhaustion (uncontrolled recursion) when processing a crafted regular expression.
Threat Intelligence
EPSS Exploit Probability
86.1% percentile
Exploit & Patch Status
No Known Exploit
No Patch Available
Weaknesses 1
CWE-674
Affected Products 1
| Vendor | Product | Version | Range |
|---|---|---|---|
| pcre | pcre | 8.41 | any |
References 5
- openwall.com http://openwall.com/lists/oss-security/2017/07/11/3
- openwall.com http://www.openwall.com/lists/oss-security/2023/04/11/1
- openwall.com http://www.openwall.com/lists/oss-security/2023/04/12/1
- securityfocus.com http://www.securityfocus.com/bid/99575
- lists.apache.org https://lists.apache.org/thread.html/rf9fa47ab66495c78bb4120b0754dd9531ca2ff0430f6685ac9b07772%40%3Cdev.mina.apache.org%3E
Remediation
No remediation data recorded yet
Check vendor advisories and the NVD entry for patch availability.