This is the mail archive of the
glibc-bugs@sourceware.org
mailing list for the glibc project.
[Bug regex/17070] regcomp with REG_EXTENDED uses unbounded CPU or RAM
- From: "bugdal at aerifal dot cx" <sourceware-bugzilla at sourceware dot org>
- To: glibc-bugs at sourceware dot org
- Date: Thu, 19 Jun 2014 15:05:07 +0000
- Subject: [Bug regex/17070] regcomp with REG_EXTENDED uses unbounded CPU or RAM
- Auto-submitted: auto-generated
- References: <bug-17070-131 at http dot sourceware dot org/bugzilla/>
https://sourceware.org/bugzilla/show_bug.cgi?id=17070
Rich Felker <bugdal at aerifal dot cx> changed:
What |Removed |Added
----------------------------------------------------------------------------
CC| |bugdal at aerifal dot cx
--- Comment #1 from Rich Felker <bugdal at aerifal dot cx> ---
I'm guessing -9 got interpreted as (size_t)-9, in which case that many states
are really needed in the compiled regex. This is why POSIX allows
implementations to place a limit on the number of repetitions supported in
{n,m} (IIRC only up to 256 need to be supported) and why glibc should make use
of this allowance.
--
You are receiving this mail because:
You are on the CC list for the bug.