CVE-2009-5155

In the GNU C Library (aka glibc or libc6) before 2.28, parse_reg_exp in posix/regcomp.c misparses alternatives, which allows attackers to cause a denial of service (assertion failure and application exit) or trigger an incorrect result by attempting a regular-expression match.
Configurations

Configuration 1 (hide)

cpe:2.3:a:gnu:glibc:*:*:*:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:a:netapp:cloud_backup:*:*:*:*:*:*:*:*
cpe:2.3:a:netapp:ontap_select_deploy_administration_utility:-:*:*:*:*:*:*:*
cpe:2.3:a:netapp:steelstore_cloud_integrated_storage:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2019-02-26 02:29

Updated : 2023-11-07 02:04


NVD link : CVE-2009-5155

Mitre link : CVE-2009-5155

CVE.ORG link : CVE-2009-5155


JSON object : View

Products Affected

netapp

  • steelstore_cloud_integrated_storage
  • cloud_backup
  • ontap_select_deploy_administration_utility

gnu

  • glibc
CWE
CWE-19

Data Processing Errors