This release fixes these vulnerabilies: CVE-2015-8383, CVE-2015-8386, CVE-2015-8387, CVE-2015-8389, CVE-2015-8390, CVE-2015-8391, CVE-2015-8393, CVE-2015-8394. It also fixes compiling comments with auto-callouts, compiling expressions with negated classes in UCP mode, compiling expressions with an isolated \E between an item and its qualifier with auto-callouts, a crash in regexec() if REG_STARTEND option is set and pmatch argument is NULL, a stack overflow when formatting a 32-bit integer in pcregrep tool, compiling expressions with an empty \Q\E sequence between an item and its qualifier with auto-callouts, compiling expressions with global extended modifier that is disabled by local no-extended option at the start of the expression just after a whitespace, a possible crash in pcre_copy_named_substring() if a named substring has number greater than the space in the ovector, a buffer overflow when compiling an expression with named groups with a group that reset capture numbers, and a crash in pcre_get_substring_list() if the use of \K caused the start of the match to be earlier than the end.
sudo dnf upgrade --refresh --advisory=FEDORA-2015-eb896290d3
Please login to add feedback.
This update has been submitted for testing by ppisar.
pcre-8.38-1.fc22 ejected from the push because u"Cannot find relevant tag for pcre-8.38-1.fc22. None of ['f22-updates-testing', 'f22-updates-testing-pending'] are in [u'epel7-testing-candidate', u'dist-6E-epel-testing-candidate', u'dist-5E-epel-testing-candidate', u'f22-updates-candidate', u'f23-updates-candidate', u'f21-updates-candidate']."
This update has been submitted for testing by ppisar.
works for me
pcre-8.38-1.fc22 ejected from the push because u"Cannot find relevant tag for pcre-8.38-1.fc22. None of ['f22-updates-testing', 'f22-updates-testing-pending'] are in [u'epel7-testing-candidate', u'dist-6E-epel-testing-candidate', u'dist-5E-epel-testing-candidate', u'f22-updates-candidate', u'f23-updates-candidate', u'f21-updates-candidate']."
no regressions noted
This update has been pushed to testing.
This update has been submitted for stable by bodhi.
works for me
This update has been pushed to stable.