SCIENTIFIC-LINUX-ERRATA Archives

March 2015

SCIENTIFIC-LINUX-ERRATA@LISTSERV.FNAL.GOV

Options: Use Monospaced Font
Show Text Part by Default
Show All Mail Headers

Message: [<< First] [< Prev] [Next >] [Last >>]
Topic: [<< First] [< Prev] [Next >] [Last >>]
Author: [<< First] [< Prev] [Next >] [Last >>]

Print Reply
Subject:
From:
Pat Riehecky <[log in to unmask]>
Reply To:
Date:
Wed, 25 Mar 2015 15:17:57 +0000
Content-Type:
text/plain
Parts/Attachments:
text/plain (31 lines)
Synopsis:          Low: pcre security and enhancement update
Advisory ID:       SLSA-2015:0330-2
Issue Date:        2015-03-05
CVE Numbers:       CVE-2014-8964
--

A flaw was found in the way PCRE handled certain malformed regular
expressions. This issue could cause an application (for example,
Konqueror) linked against PCRE to crash while parsing malicious regular
expressions. (CVE-2014-8964)

This update also adds the following enhancement:

* Support for the little-endian variant of IBM Power Systems has been
added to the pcre packages.
--

SL7
  x86_64
    pcre-8.32-14.el7.i686.rpm
    pcre-8.32-14.el7.x86_64.rpm
    pcre-debuginfo-8.32-14.el7.i686.rpm
    pcre-debuginfo-8.32-14.el7.x86_64.rpm
    pcre-devel-8.32-14.el7.i686.rpm
    pcre-devel-8.32-14.el7.x86_64.rpm
    pcre-static-8.32-14.el7.i686.rpm
    pcre-static-8.32-14.el7.x86_64.rpm
    pcre-tools-8.32-14.el7.x86_64.rpm

- Scientific Linux Development Team

ATOM RSS1 RSS2