Bug #70110 [Opn->Csd]: preg_match problem

From: Date: Tue, 16 Jun 2020 13:17:20 +0000
Subject: Bug #70110 [Opn->Csd]: preg_match problem
References: 1  Groups: php.bugs 
Request: Send a blank email to php-bugs+get-227510@lists.php.net to get a copy of this message
Edit report at https://bugs.php.net/bug.php?id=70110&edit=1 ID: 70110 Updated by: sjon@php.net Reported by: bugzilla77 at gmail dot com Summary: preg_match problem -Status: Open +Status: Closed Type: Bug Package: PCRE related Operating System: * PHP Version: 7.0.0beta1 -Assigned To: +Assigned To: sjon Block user comment: N Private report: N CVE-ID: New Comment: fixed since 7.3 Previous Comments: ------------------------------------------------------------------------ [2017-11-09 11:31:41] stanislav dot khromov at gmail dot com Here is a pull request to bump the maximum stack size to 512K, as recommended by the PCRE docs. https://github.com/php/php-src/pull/2910 ------------------------------------------------------------------------ [2017-09-04 10:12:11] alec@php.net This just hit us here: https://github.com/roundcube/roundcubemail/issues/5932 And the regex we use is '/^\* (OK|PREAUTH)/i', and this just silently does not match where it should. Please, give it a higher prio. A warning in the log is really needed for such cases. ------------------------------------------------------------------------ [2017-05-31 13:16:45] donatj at gmail dot com As it stands, retuning false is a very bad behavior. We have thousands of regexes in hundreds of code bases that just worked but fail at random in PHP7. Having to now check every single one for JIT stack over flow every single time is a MAJOR hassle. I would have strongly preferred an exception or a warning that would at least automatically shown up in our logs, but right now our existing code bases fail silently which is the worst of all worlds. ------------------------------------------------------------------------ [2017-05-03 11:31:45] mk at bio dot logis dot de Just want to point out that Drupal's and Symfony's YAML parsing are affected by this bug as well: https://www.drupal.org/node/2792877 ------------------------------------------------------------------------ [2017-05-03 11:23:14] cmb@php.net Thanks for the reminder – I don't have time for this, though. ------------------------------------------------------------------------ The remainder of the comments for this report are too long. To view the rest of the comments, please view the bug report online at https://bugs.php.net/bug.php?id=70110 -- Edit this bug report at https://bugs.php.net/bug.php?id=70110&edit=1

« previous php.bugs (#227510) next »