Stack Exhaustion Vulnerability in PCRE by Vendor PCRE
CVE-2017-11164
7.5HIGH
What is CVE-2017-11164?
In PCRE version 8.41, a vulnerability exists within the match function implemented in pcre_exec.c. This security issue arises due to the OP_KETRMAX feature, which can lead to stack exhaustion caused by uncontrolled recursion when handling specifically crafted regular expressions. Attackers could exploit this flaw to disrupt application functionality and potentially compromise system stability.
