pcre-8.42-6.el8
エラータID: AXSA:2021-2716:01
リリース日:
2021/12/13 Monday - 12:27
題名:
pcre-8.42-6.el8
影響のあるチャネル:
Asianux Server 8 for x86_64
Severity:
Low
Description:
以下項目に対処しました。
[Security Fix]
- PCRE の libpcre には、UTF が無効になっていて、\X や \R 修飾子に
1 つ以上の量指定子が指定されている場合、JIT でのサブジェクトの
バッファオーバーリードが発生するという、CVE-2019-20454 と関連した
脆弱性があります。(CVE-2019-20838)
- PCRE の libpcre には "(?C" 文字列に続く巨大な数値を介して、
整数オーバーフローが発生する脆弱性があります。(CVE-2020-14155)
解決策:
パッケージをアップデートしてください。
CVE:
CVE-2019-20838
libpcre in PCRE before 8.43 allows a subject buffer over-read in JIT when UTF is disabled, and \X or \R has more than one fixed quantifier, a related issue to CVE-2019-20454.
libpcre in PCRE before 8.43 allows a subject buffer over-read in JIT when UTF is disabled, and \X or \R has more than one fixed quantifier, a related issue to CVE-2019-20454.
CVE-2020-14155
libpcre in PCRE before 8.44 allows an integer overflow via a large number after a (?C substring.
libpcre in PCRE before 8.44 allows an integer overflow via a large number after a (?C substring.
追加情報:
N/A
ダウンロード:
SRPMS
- pcre-8.42-6.el8.src.rpm
MD5: a0373426ed2e462cf965cc430fe384e5
SHA-256: 49df22aa5d68e04310bfba9afcdb8f31535f11f08115823ef17c2187203c5718
Size: 1.54 MB
Asianux Server 8 for x86_64
- pcre-8.42-6.el8.x86_64.rpm
MD5: 08cd4993721f25f06d1186ce09279c67
SHA-256: 36fc82b1a6b91f6f5a2d86e3208ba32ef06a108f5e1c1b17146ac38c95d100be
Size: 209.54 kB - pcre-cpp-8.42-6.el8.x86_64.rpm
MD5: 45d6ac1509e194a726aeb638bd7a9152
SHA-256: 514b021c4c5db492db931f7d344d226f4a9f73be14ab0c4cbf7d57433f8af403
Size: 46.17 kB - pcre-devel-8.42-6.el8.x86_64.rpm
MD5: 9b477645e563a7696f1b78dd78702dae
SHA-256: 7f58575279344f941abc75de4f70cb2c3df7cff57038a1294e39f2c21825f068
Size: 550.31 kB - pcre-static-8.42-6.el8.x86_64.rpm
MD5: 87ed6d38c647ace0a113ec48cd3b334e
SHA-256: 0b7aa6bee2fdaed849aa58854b4c1c7b05368ec3bdf296750f0dfb54b091c3e6
Size: 446.63 kB - pcre-utf16-8.42-6.el8.x86_64.rpm
MD5: 6bed1a0dad7e37e88c14b25591f26608
SHA-256: 6f02f567ed027417d8a40ac28ecd1829c4e88df18003d29024fe04106eb0019b
Size: 194.32 kB - pcre-utf32-8.42-6.el8.x86_64.rpm
MD5: ffa9a5e3b2027360d64741ee25287023
SHA-256: b4198d7f75f44b38bfcf3cb445d60729a90ee94e2ae3fea92ba498165ad26988
Size: 184.84 kB - pcre-8.42-6.el8.i686.rpm
MD5: 315dfdc1a1177aa787b1262b19efdaa4
SHA-256: a31db692a3749ca81041c719c63890a7e6c0d0f915119c8f3013dbb4d01d28ff
Size: 209.68 kB - pcre-cpp-8.42-6.el8.i686.rpm
MD5: 69e21fa3a0e1913f6f758d9d4f212b53
SHA-256: 25827c65d24865e5cfc6cd423fe0a6e1cd7587777e3a26c0e46c930e1d4db617
Size: 47.44 kB - pcre-devel-8.42-6.el8.i686.rpm
MD5: ef37e1c4d7c4a11d46ab737a658431fa
SHA-256: fe181779bc9fe0ebe263082e0d83dbf6b034122a9a2284b7f74a0d8579dafac7
Size: 550.30 kB - pcre-static-8.42-6.el8.i686.rpm
MD5: 5cb56af23689321a2981af051a70b46a
SHA-256: 47be877e322139f725de2e1f9fc04ff2c7463b0f4d70522b9000c2988e4d7aaf
Size: 450.51 kB - pcre-utf16-8.42-6.el8.i686.rpm
MD5: 201842bfe2dff8e2b7ea5783da658c90
SHA-256: fea8da6b9b8d7a2a99a6c1ce0724ed9acf538adf1ab24d686aee34abe164b908
Size: 195.16 kB - pcre-utf32-8.42-6.el8.i686.rpm
MD5: cc1eaafd4d24205deaf12357dcac1417
SHA-256: 359036f928ff8a921fea644f87099b253c0fda78dd4d8434d40bc08e3cd8cd3f
Size: 186.26 kB