yocto ▾
›
kirkstone ▾
›
vulnerability
›
CVE-2022-41409
Component Overview
Vulnerability Overview
Name
CVE-2022-41409
Source
NVD (
link
)
Debian (
link
)
Description
Integer overflow vulnerability in pcre2test before 10.41 allows attackers to cause a denial of service or other unspecified impacts via negative input.
CWEs
CWE-190
Published Date
Jul 18, 2023
Updated Date
Jun 17, 2026
Workaround
-
Advisories
https://github.com/PCRE2Project/pcre2/commit/94e1c001761373b7d9450768aa15d04c25547a35
Patch
https://github.com/PCRE2Project/pcre2/issues/141
Exploit
https://github.com/PCRE2Project/pcre2/commit/94e1c001761373b7d9450768aa15d04c25547a35
Patch
https://github.com/PCRE2Project/pcre2/issues/141
Exploit
Analysis
#
Affected Component
Analysis
libpcre2
Patched
Vulnerability Ratings
#
7.5
CVSSv31
NaN
other
Others affected components
#
Name
Project
Project Version
Version
Status
pcre2
buildroot
2025.02.x
10.46
Not Affected
pcre2
buildroot
master
10.47
Not Affected
pcre2
openwrt
master
10.47-r1
Not Affected
pcre2
openwrt
openwrt-25.12
10.47-r1
Not Affected
libpcre2
yocto
master
10.47
Not Affected
libpcre2
yocto
scarthgap
10.43
Not Affected
Resolved with patches
#
libpcre2 (yocto:kirkstone)
#
Title
Author
Resolve
1
Diagnose negative repeat value in pcre2test subject line
Philip Hazel <Philip.Hazel@gmail.com>
CVE-2022-41409