CVE-2017-7245: Pcre

High severity, CVSS 7.8. EPSS: 2.4% chance of exploitation in the next 30 days.

Stack-based buffer overflow in the pcre32_copy_substring function in pcre_get.c in libpcre1 in PCRE 8.40 allows remote attackers to cause a denial of service (WRITE of size 4) or possibly have unspecified other impact via a crafted file.

Affected products

  • Pcre Pcre: version 8.40 only

Published 2017-03-23. Last modified 2026-06-17.