CVE-2025-29918
authorPierre Chifflier <pollux@debian.org>
Sun, 30 Mar 2025 10:03:02 +0000 (12:03 +0200)
committerThorsten Alteholz <debian@alteholz.de>
Sun, 30 Mar 2025 10:03:02 +0000 (12:03 +0200)
commitcf076a99d2836f5b36d0185832580ecfb2820ae5
treefadddb9312c683bac4d057a28251652a596e79ff
parent82dfb9632aaadaf5d10eb47b3f40e5098eb0f182
CVE-2025-29918

commit f6c9490e1f7b0b375c286d5313ebf3bc81a95eb6
Author: Philippe Antoine <pantoine@oisf.net>
Date:   Tue Jan 28 15:02:45 2025 +0100

    detect/pcre: avoid infinite loop after negated pcre

    Ticket: 7526

    The usage of negated pcre, followed by other relative payload
    content keywords could lead to an infinite loop.

    This is because regular (not negated) pcre can test multiple
    occurences, but negated pcre should be tried only once.

    (cherry picked from commit b14c67cbdf25fa6c7ffe0d04ddf3ebe67b12b50b)

Gbp-Pq: Name CVE-2025-29918.patch
src/detect-engine-content-inspection.c