CVE-2006-7225

Severity CVSS v4.0:
Pending analysis
Type:
CWE-20 Input Validation
Publication date:
03/12/2007
Last modified:
11/10/2017

Description

Perl-Compatible Regular Expression (PCRE) library before 6.7 allows context-dependent attackers to cause a denial of service (error or crash) via a regular expression that involves a "malformed POSIX character class", as demonstrated via an invalid character after a [[ sequence.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:perl:pcre:0.91:*:*:*:*:*:*:*
cpe:2.3:a:perl:pcre:0.92:*:*:*:*:*:*:*
cpe:2.3:a:perl:pcre:0.93:*:*:*:*:*:*:*
cpe:2.3:a:perl:pcre:0.94:*:*:*:*:*:*:*
cpe:2.3:a:perl:pcre:0.95:*:*:*:*:*:*:*
cpe:2.3:a:perl:pcre:0.96:*:*:*:*:*:*:*
cpe:2.3:a:perl:pcre:0.97:*:*:*:*:*:*:*
cpe:2.3:a:perl:pcre:0.98:*:*:*:*:*:*:*
cpe:2.3:a:perl:pcre:0.99:*:*:*:*:*:*:*
cpe:2.3:a:perl:pcre:1.00:*:*:*:*:*:*:*
cpe:2.3:a:perl:pcre:1.01:*:*:*:*:*:*:*
cpe:2.3:a:perl:pcre:1.02:*:*:*:*:*:*:*
cpe:2.3:a:perl:pcre:1.03:*:*:*:*:*:*:*
cpe:2.3:a:perl:pcre:1.04:*:*:*:*:*:*:*
cpe:2.3:a:perl:pcre:1.05:*:*:*:*:*:*:*