Bug List: (This bug is not in your last search results)   Show last search results      Search page      Enter new bug
Bug#: 198198
Alias:
Product:
Component:
Status: RESOLVED
Resolution: FIXED
Assigned To: Gentoo Security <security@gentoo.org>
Hardware:
OS:
Version:
Priority:
Severity:
Reporter: Robert Buchholz <rbu@gentoo.org>
Add CC:
CC:
Remove selected CCs
URL:
Summary:
Status Whiteboard:
Keywords:
Flags: Requestee:
 
 
  ()

Filename Description Type Creator Created Size Actions
Create a New Attachment (proposed patch, testcase, etc.) View All

Bug 198198 depends on: 195416 Show dependency tree
Bug 198198 blocks:

Additional Comments: (this is where you put emerge --info)


Not eligible to see or edit group visibility for this bug.






View Bug Activity   |   Format For Printing   |   XML   |   Clone This Bug


Description:   Opened: 2007-11-05 19:55 0000
Copied from RedHat's BZ:

CVE-2007-1659:
unmatched \Q\E sequences with orphan \E codes can cause the compiled
regex to become desynchronized, resulting in corrupt bytecode that may
result in multiple exploitable conditions. This was inadvertently
fixed by the pcre maintainer in version 7.0, however another case of a
lone \E inside a character class remained, this has been fixed in 7.3

CVE-2007-1660:
multiple forms of character class had their sizes miscalculated on
initial passes, resulting in too little memory being allocated, this
was also inadvertently fixed in version 7.0, where the compile phase
was entirely re-engineered (and much improved, from a security
standpoint).

https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2007-1659
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2007-1660

------- Comment #1 From Robert Buchholz 2007-11-05 20:10:40 0000 -------
According to the comments, 7.3 is unaffected. Stabling takes place in bug
#195416 since 2007-10-10. The only missing keywords right now are "arm m68k
mips s390 sh".

What's left to do is a GLSA and an audit of other packages that ship code
copies, I'm after that.

------- Comment #2 From Robert Buchholz 2007-11-06 17:18:23 0000 -------
More issues.

------- Comment #3 From Robert Buchholz 2007-11-09 10:23:27 0000 -------
CVE names are public, GLSA request filed.

------- Comment #4 From Pierre-Yves Rofes 2007-11-20 21:56:32 0000 -------
GLSA 200711-30

Bug List: (This bug is not in your last search results)   Show last search results      Search page      Enter new bug