CVE-2019-9192
CVE Details
Last Update
08/16/2024
NIST CVE Summary
In the GNU C Library (aka glibc or libc6) through 2.29, check_dst_limits_calc_pos_1 in posix/regexec.c has Uncontrolled Recursion, as demonstrated by '(|)(\1\1)*' in grep, a different issue than CVE-2018-20796. NOTE: the software maintainer disputes that this is a vulnerability because the behavior occurs only with a crafted pattern
Our Official Summary
This CVE is reported in the GNU C Library (aka glibc or libc6) through 2.29. Upstream does not consider this to be a security issue, per https://sourceware.org/glibc/wiki/Security%20Exceptions and no fix is available. This issue has been disputed and marked as not a security issue.
CVE Severity
Status
Ongoing
Affected Products & Versions
- Palette VerteX 4.4.14, 4.4.18
- Palette Enterprise 4.4.18
Revision History
- 1.0 08/16/2024 Initial Publication
- 2.0 08/17/2024 Added Palette VerteX 4.4.14 to Affected Products
- 3.0 09/17/2024 Added Palette VerteX 4.4.18 & Palette Enterprise 4.4.18 to Affected Products