← Back to CVE List

CVE-2016-10253

Published: 2017-03-18T20:59Z
Last Modified: 2024-11-21T02:43Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
An issue was discovered in Erlang/OTP 18.x. Erlang's generation of compiled regular expressions is vulnerable to a heap overflow. Regular expressions using a malformed extpattern can indirectly specify an offset that is used as an array index. This ordinal permits arbitrary regions within the erts_alloc arena to be both read and written to. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt