fixed 819050 2:8.38-3
severity 819050 important
tags 819050 fixed-upstream upstream help
quit

Hi,

> When investigating a segmentation fault in suricata it was showing
> the crash is caused by libpcre3 when pcre_exec of a certain regex is
> called. Further investigations have shown that also prcegrep using
> the regex resulted is a segfault.

Thanks for the report. There have been a substantial number of upstream
bug-fixes between jessie and stretch's versions of PCRE3.

> If the jit is disabled the crash does not happen

> The crash does no longer happen in stretch/sid which has a newer
> pcre version.

If the relevant upstream bugfix were found and was straightforwardly
back-portable, I'd be happy to accept the patch. I'm aware this isn't an
ideal response, but it's not entirely straightforward to look at your
(quite complex) regex and work out which of the many upstream issues it
corresponds to!

Regards,

Matthew

Reply via email to