https://bugs.exim.org/show_bug.cgi?id=1854

            Bug ID: 1854
           Summary: Null pointer dereference in pcretest
           Product: PCRE
           Version: 8.39
          Hardware: x86
                OS: Linux
            Status: NEW
          Severity: security
          Priority: medium
         Component: Code
          Assignee: p...@hermes.cam.ac.uk
          Reporter: bshas...@sec.t-labs.tu-berlin.de
                CC: pcre-dev@exim.org

The pcretest binary segfaults on a null pointer dereference for the attached
inputs (filename start with HARDEN prefix) when invoked like so:
pcretest -q <input_filename> /dev/null

The null dereference occurs due to an integer overflow while parsing digits
contained in the input string/file. I have also attached a tentative patch for
this. Could you please acknowledge this issue? Happy to help.

Thanks,
Bhargava

-- 
You are receiving this mail because:
You are on the CC list for the bug.
-- 
## List details at https://lists.exim.org/mailman/listinfo/pcre-dev 

Reply via email to