|
| From: | Chicken Scheme |
| Subject: | [Chicken-janitors] [Chicken-bugs] #351: Update the PCRE shipped with chicken (it has vulnerabilities) |
| Date: | Fri, 09 Nov 2007 08:50:06 -0000 |
#351: Update the PCRE shipped with chicken (it has vulnerabilities)
---------------------+------------------------------------------------------
Reporter: sjamaan | Owner: felix
Type: task | Status: new
Priority: critical | Component: infrastructure
Version: 2.7 | Keywords:
---------------------+------------------------------------------------------
There are some pretty serious vulnerabilities in PCRE versions before 7.3.
The PCRE that ships with Chicken should be upgraded.
Here's a list of vulnerabilities I saw in the CVE RSS feed today:
* http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-1659
* http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-1660
* http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-1661
* http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-1662
* http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-4766
* http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-4767
* http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-4768
--
Ticket URL: <http://trac.callcc.org/ticket/351>
Chicken Scheme <http://www.call-with-current-continuation.org/>
The CHICKEN Scheme-to-C compiler
| [Prev in Thread] | Current Thread | [Next in Thread] |