{"id":"CVE-2017-11164","details":"In PCRE 8.41, the OP_KETRMAX feature in the match function in pcre_exec.c allows stack exhaustion (uncontrolled recursion) when processing a crafted regular expression.","modified":"2026-03-15T22:13:40.653490Z","published":"2017-07-11T03:29:00.277Z","references":[{"type":"WEB","url":"http://www.openwall.com/lists/oss-security/2023/04/12/1"},{"type":"WEB","url":"http://www.securityfocus.com/bid/99575"},{"type":"WEB","url":"https://lists.apache.org/thread.html/rf9fa47ab66495c78bb4120b0754dd9531ca2ff0430f6685ac9b07772%40%3Cdev.mina.apache.org%3E"},{"type":"WEB","url":"http://www.openwall.com/lists/oss-security/2023/04/11/1"},{"type":"ADVISORY","url":"http://openwall.com/lists/oss-security/2017/07/11/3"}],"affected":[{"database_specific":{"unresolved_ranges":[{"events":[{"introduced":"0"},{"last_affected":"8.41"}]}],"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2017-11164.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"}]}