Project

General

Profile

Actions

Bug #3913

closed

Memory leak from signature with pcrexform

Added by Philippe Antoine about 4 years ago. Updated about 4 years ago.

Status:
Closed
Priority:
Normal
Target version:
Affected Versions:
Effort:
Difficulty:
Label:

Description

Found by oss-fuzz
https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=25500

Reproducer is to reload signature file with
alert ip any 88 -> any any icmpv6.hdr; flow:to_client,established; content:".zip|22|"; nocase; within:12mqt tcp-pkt any any -> any any (pcre:"/gid=(\d+)/sssssssAsssssssssssssssssssssssQsss";pcrexform:"GET"; sid:481;)

SigMatchPrepare frees s->init_data. but not its transform options

Actions #1

Updated by Philippe Antoine about 4 years ago

  • Status changed from Assigned to In Review

Gitlab

Actions #2

Updated by Victor Julien about 4 years ago

  • Private changed from Yes to No
Actions #4

Updated by Victor Julien about 4 years ago

  • Status changed from Resolved to Closed
Actions

Also available in: Atom PDF