CVE Vulnerabilities

CVE-2018-21232

Uncontrolled Recursion

Published: Apr 29, 2020 | Modified: May 14, 2020
CVSS 3.x
5.5
MEDIUM
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu

re2c before 2.0 has uncontrolled recursion that causes stack consumption in find_fixed_tags.

Weakness

The product does not properly control the amount of recursion that takes place, consuming excessive resources, such as allocated memory or the program stack.

Affected Software

Name Vendor Start Version End Version
Re2c Re2c * 2.0 (excluding)

Potential Mitigations

References