CVE-2017-9729: Uclibc
High severity, CVSS 7.5. EPSS: 1.1% chance of exploitation in the next 30 days.
In uClibc 0.9.33.2, there is stack exhaustion (uncontrolled recursion) in the check_dst_limits_calc_pos_1 function in misc/regex/regexec.c when processing a crafted regular expression.
Affected products
- Uclibc Uclibc: version 0.9.33.2 only
Published 2017-06-16. Last modified 2026-06-17.