CVE-2020-11958
published 2020-04-21CVE-2020-11958: re2c 1.3 has a heap-based buffer overflow in Scanner::fill in parse/scanner.cc via a long lexeme.
PriorityP336high7.8CVSS 3.1
AVLACLPRNUIRSUCHIHAH
EPSS
1.66%
74.3th percentile
re2c 1.3 has a heap-based buffer overflow in Scanner::fill in parse/scanner.cc via a long lexeme.
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| debian | re2c | < re2c 1.3-2 (bookworm) | re2c 1.3-2 (bookworm) |
| re2c | re2c | — | — |
| re2c | re2c | >= 0 < 1.3-2 | 1.3-2 |
| re2c | re2c | >= 0 < 1.3-2 | 1.3-2 |
| re2c | re2c | >= 0 < 1.3-2 | 1.3-2 |
| re2c | re2c | >= 0 < 1.3-2 | 1.3-2 |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
osv7.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
re2c vulnerability
vendor_ubuntu·2020-04-28
CVE-2020-11958 re2c vulnerability
Title: re2c vulnerability
Summary: re2c could be made to execute arbitrary code if it received
a specially crafted file.
USN-4338-1 fixed vulnerabilities in re2c. This update provides
the corresponding update for Ubuntu 20.04 LTS.
Original advisory details:
Agostino Sarubbo discovered that re2c incorrectly handled certain files.
An attacker could possibly use this issue to execute arbitrary code.
Instructions: In general, a standard system update will make all the necessary changes.
Ubuntu
re2c vulnerability
vendor_ubuntu·2020-04-22
CVE-2020-11958 re2c vulnerability
Title: re2c vulnerability
Summary: re2c could be made to execute arbitrary code if it received
a specially crafted file.
Agostino Sarubbo discovered that re2c incorrectly handled certain files.
An attacker could possibly use this issue to execute arbitrary code.
Instructions: In general, a standard system update will make all the necessary changes.
Red Hat
re2c: heap-based buffer overflow in Scanner::fill in parse/scanner.cc
vendor_redhat·2020-04-17·CVSS 7.8
CVE-2020-11958 [HIGH] CWE-122 re2c: heap-based buffer overflow in Scanner::fill in parse/scanner.cc
re2c: heap-based buffer overflow in Scanner::fill in parse/scanner.cc
re2c 1.3 has a heap-based buffer overflow in Scanner::fill in parse/scanner.cc via a long lexeme.
Statement: This flaw was tested and does not affect any version of Red Hat Enterprise Linux. The vulnerable code was introduced in a version that is not in the Red Hat Enterprise Linux repositories.
Package: re2c (Red Hat Enterprise Linux 8) - Not affected
Debian
CVE-2020-11958: re2c - re2c 1.3 has a heap-based buffer overflow in Scanner::fill in parse/scanner.cc v...
vendor_debian·2020·CVSS 7.8
CVE-2020-11958 [HIGH] CVE-2020-11958: re2c - re2c 1.3 has a heap-based buffer overflow in Scanner::fill in parse/scanner.cc v...
re2c 1.3 has a heap-based buffer overflow in Scanner::fill in parse/scanner.cc via a long lexeme.
Scope: local
bookworm: resolved (fixed in 1.3-2)
bullseye: resolved (fixed in 1.3-2)
forky: resolved (fixed in 1.3-2)
sid: resolved (fixed in 1.3-2)
trixie: resolved (fixed in 1.3-2)
GHSA
GHSA-qvw2-729q-g92x: re2c 1
ghsa_unreviewed·2022-05-24
CVE-2020-11958 [MEDIUM] CWE-787 GHSA-qvw2-729q-g92x: re2c 1
re2c 1.3 has a heap-based buffer overflow in Scanner::fill in parse/scanner.cc via a long lexeme.
OSV
CVE-2020-11958: re2c 1
osv·2020-04-21·CVSS 7.8
CVE-2020-11958 [HIGH] CVE-2020-11958: re2c 1
re2c 1.3 has a heap-based buffer overflow in Scanner::fill in parse/scanner.cc via a long lexeme.
No detection rules found.
No public exploits indexed.
http://www.openwall.com/lists/oss-security/2020/04/21/1https://blogs.gentoo.org/ago/2020/04/19/re2c-heap-overflow-in-scannerfill-scanner-cc/https://github.com/skvadrik/re2c/commit/c4603ba5ce229db83a2a4fb93e6d4b4e3ec3776ahttps://security.gentoo.org/glsa/202007-28https://usn.ubuntu.com/4338-1/https://usn.ubuntu.com/4338-2/https://www.openwall.com/lists/oss-security/2020/04/19/1http://www.openwall.com/lists/oss-security/2020/04/21/1https://blogs.gentoo.org/ago/2020/04/19/re2c-heap-overflow-in-scannerfill-scanner-cc/https://github.com/skvadrik/re2c/commit/c4603ba5ce229db83a2a4fb93e6d4b4e3ec3776ahttps://security.gentoo.org/glsa/202007-28https://usn.ubuntu.com/4338-1/https://usn.ubuntu.com/4338-2/https://www.openwall.com/lists/oss-security/2020/04/19/1
2020-04-21
Published