[ubuntu/focal-security] pcre3 2:8.39-12ubuntu0.1 (Accepted)

David Fernandez Gonzalez david.fernandezgonzalez at canonical.com
Tue May 17 13:43:33 UTC 2022


pcre3 (2:8.39-12ubuntu0.1) focal-security; urgency=medium

  * SECURITY UPDATE: buffer over-read in JIT
    - debian/patches/CVE-2019-20838.patch: check if type is not
      extended Unicode parameter or Unicode new line in 
      pcre_jit_compile.c.
    - CVE-2019-20838
  * SECURITY UPDATE: integer overflow via a large number
    - debian/patches/CVE-2020-14155.patch: ensure that the number
      is lower than 256 in pcre_compile.c.
    - CVE-2020-14155

Date: 2022-05-17 11:05:17.529867+00:00
Changed-By: David Fernandez Gonzalez <david.fernandezgonzalez at canonical.com>
https://launchpad.net/ubuntu/+source/pcre3/2:8.39-12ubuntu0.1
-------------- next part --------------
Sorry, changesfile not available.


More information about the Focal-changes mailing list