pcre2-10.32-2.el8

エラータID: AXSA:2021-1117:01

Release date: 
Friday, January 8, 2021 - 08:18
Subject: 
pcre2-10.32-2.el8
Affected Channels: 
Asianux Server 8 for x86_64
Severity: 
Moderate
Description: 

The pcre2 package contains a new generation of the Perl Compatible Regular Expression libraries for implementing regular expression pattern matching using the same syntax and semantics as Perl.

Security Fix(es):

* pcre: Out of bounds read in JIT mode when \X is used in non-UTF mode (CVE-2019-20454)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

CVE-2019-20454
An out-of-bounds read was discovered in PCRE before 10.34 when the pattern \X is JIT compiled and used to match specially crafted subjects in non-UTF mode. Applications that use PCRE to parse untrusted input may be vulnerable to this flaw, which would allow an attacker to crash the application. The flaw occurs in do_extuni_no_utf in pcre2_jit_compile.c.

Solution: 

Update packages.

Additional Info: 

N/A

Download: 

SRPMS
  1. pcre2-10.32-2.el8.src.rpm
    MD5: 2c74c959e39c4b8cf50914839446188d
    SHA-256: fcdc96c466e5cd747c39df4eef3e51538c12b66c7f26abc3a1b05a1a7cf9fa63
    Size: 1.59 MB

Asianux Server 8 for x86_64
  1. pcre2-10.32-2.el8.x86_64.rpm
    MD5: 2000a0333b52f04fb19a516cda08cdeb
    SHA-256: 94a03b896514ea8715800ba52b12db9bb3ae406b204133afc21c786ae1aa9746
    Size: 245.28 kB
  2. pcre2-devel-10.32-2.el8.x86_64.rpm
    MD5: 3fdfcd5cd8ea053ee5ea01f54fca1502
    SHA-256: fe5d91b2432932616dfc3ab903010c7f7d183270d397d8c446f6610939cf106e
    Size: 603.64 kB
  3. pcre2-utf16-10.32-2.el8.x86_64.rpm
    MD5: c8e8b4e967a7db58067e1333b4d77b3d
    SHA-256: 502618b272fa344ea2d3a894eb497ad720646ceb8ee9c7145bb245ff5472c2df
    Size: 227.67 kB
  4. pcre2-utf32-10.32-2.el8.x86_64.rpm
    MD5: 19a01c9958b9196c3651e396b161fbef
    SHA-256: 849137ed2a250316cdb700e89ee8a4240764bbe590ccceabad411b38f7e15eb4
    Size: 219.23 kB
  5. pcre2-10.32-2.el8.i686.rpm
    MD5: e92697f09802e3707958e8ef15dd3d20
    SHA-256: 540a9904b37334163f1cc3d293f77063a81177a514f7fb4b0055efff07b1f3e7
    Size: 245.36 kB
  6. pcre2-devel-10.32-2.el8.i686.rpm
    MD5: 9f8b7a6d6943eae203c42b1583c26734
    SHA-256: 14e716e98cbc90183f83ae37868c212384b516b244dccdd2787a87e3eb9e3ff1
    Size: 603.64 kB
  7. pcre2-utf16-10.32-2.el8.i686.rpm
    MD5: 75f19fdad534209afce07739591be72b
    SHA-256: ec6d6693b581685310c0f8340cdf2ccace17eb058f91eefed8e49c5f7367d5a5
    Size: 228.32 kB
  8. pcre2-utf32-10.32-2.el8.i686.rpm
    MD5: 9dfb88179dfc057e039683d2aa8e9558
    SHA-256: e83c04ef10c941ba9bd2cd68c27e8d9af5ebab754c8f23cd1399f59964882b26
    Size: 219.86 kB