re2c: Denial of Service — GLSA 202408-16

A vulnerability has been discovered in re2c, which can lead to a denial of service.

Affected packages

dev-util/re2c on all architectures
Affected versions < 2.0
Unaffected versions >= 2.0

Background

re2c is a tool for generating C-based recognizers from regular expressions.

Description

Please review the CVE identifier referenced below for details.

Impact

Please review the CVE identifier referenced below for details.

Workaround

There is no known workaround at this time.

Resolution

All re2c users should upgrade to the latest version:

 # emerge --sync
 # emerge --ask --oneshot --verbose ">=dev-util/re2c-2.0"
 

References

Release date
August 09, 2024

Latest revision
August 09, 2024: 1

Severity
normal

Exploitable
local

Bugzilla entries