Show plain JSON{"configurations": [{"nodes": [{"cpeMatch": [{"criteria": "cpe:2.3:a:erlang:erlang\\/otp:18.0:*:*:*:*:*:*:*", "matchCriteriaId": "8018A339-1BE1-4984-84E7-7F165B7C9D82", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:18.0:rc1:*:*:*:*:*:*", "matchCriteriaId": "5D6235DD-9BE1-46B9-9660-FDB2E0E589BE", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:18.0:rc2:*:*:*:*:*:*", "matchCriteriaId": "D61ECDB0-AF78-4289-8320-9508C7540E01", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:18.0.1:*:*:*:*:*:*:*", "matchCriteriaId": "42A0971B-8BFC-4DE0-B6F3-17A8BDC4F27F", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:18.0.2:*:*:*:*:*:*:*", "matchCriteriaId": "4929C1E5-4264-40E1-99E4-99D7162CF290", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:18.0.3:*:*:*:*:*:*:*", "matchCriteriaId": "F27A2FCB-71BE-4733-851C-5B9BA371D335", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:18.1:*:*:*:*:*:*:*", "matchCriteriaId": "34CCD48E-8CA5-4C94-862B-66E3A90DCCD7", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:18.1.1:*:*:*:*:*:*:*", "matchCriteriaId": "E716134E-81C9-4BBF-B488-4B3F9821693A", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:18.1.2:*:*:*:*:*:*:*", "matchCriteriaId": "06325BB8-A9DE-46BD-B1E3-B7188782037F", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:18.1.3:*:*:*:*:*:*:*", "matchCriteriaId": "11890EDF-BE90-4C60-B764-8BD3CAB21ADC", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:18.1.4:*:*:*:*:*:*:*", "matchCriteriaId": "250909D8-9887-4A88-A2EC-65D5074D3C5F", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:18.1.5:*:*:*:*:*:*:*", "matchCriteriaId": "BA9AEF2D-EEBF-41C9-BD70-A9588A6B90E5", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:18.2:*:*:*:*:*:*:*", "matchCriteriaId": "0E67B644-8AAA-4C2C-A5EC-BB04968B8863", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:18.2.1:*:*:*:*:*:*:*", "matchCriteriaId": "AEDB7F8F-3F28-4806-96A9-F7854613F694", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:18.2.2:*:*:*:*:*:*:*", "matchCriteriaId": "4E373AEF-9CFB-4ACB-9E3A-8DE4DE80E15A", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:18.2.3:*:*:*:*:*:*:*", "matchCriteriaId": "F34A3A45-5E14-424F-A89D-AC9BC059A04B", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:18.2.4:*:*:*:*:*:*:*", "matchCriteriaId": "18F45772-7C39-4ECC-86D5-4909F735F680", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:18.2.4.1:*:*:*:*:*:*:*", "matchCriteriaId": "6A4A6295-C5E5-4102-BA26-157F0F1BE1B2", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:18.3:*:*:*:*:*:*:*", "matchCriteriaId": "1E5229EE-B424-402E-A131-0DB9EF024E4A", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:18.3.1:*:*:*:*:*:*:*", "matchCriteriaId": "27DF70EC-1460-44EB-B510-48A13EB8ECF3", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:18.3.2:*:*:*:*:*:*:*", "matchCriteriaId": "3AC30ADD-3014-4864-93FF-0D1FFE318BDA", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:18.3.3:*:*:*:*:*:*:*", "matchCriteriaId": "0029FD24-1602-4B57-AE28-70CD68D4D12C", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:18.3.4:*:*:*:*:*:*:*", "matchCriteriaId": "2701066A-D6EB-48F4-B210-EEEE44CDC61A", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:18.3.4.1:*:*:*:*:*:*:*", "matchCriteriaId": "47EEDC6E-A687-4365-8C75-1689AA0E77B5", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:18.3.4.2:*:*:*:*:*:*:*", "matchCriteriaId": "259D4E21-AF85-4D66-85D9-BBE8AD56EE91", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:18.3.4.3:*:*:*:*:*:*:*", "matchCriteriaId": "8D9D0562-BCCC-4643-B413-75846249D5F2", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:18.3.4.4:*:*:*:*:*:*:*", "matchCriteriaId": "E356F8E1-8A9A-49B0-8590-F7D4FFA19780", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:18.3.4.5:*:*:*:*:*:*:*", "matchCriteriaId": "D977E05C-C8B7-44AA-8122-1C6AF2ECDABD", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:19.0:*:*:*:*:*:*:*", "matchCriteriaId": "20385664-1588-451A-9EE8-F1F52873F708", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:19.0:rc1:*:*:*:*:*:*", "matchCriteriaId": "0C5A375E-B4FC-4F0B-98C4-F96F3F533AD4", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:19.0:rc2:*:*:*:*:*:*", "matchCriteriaId": "E4351AFE-0A50-46E1-A155-7ACF3AB5CC0B", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:19.0.1:*:*:*:*:*:*:*", "matchCriteriaId": "DE4B6625-2994-471A-AA9B-1B1E537935C3", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:19.0.2:*:*:*:*:*:*:*", "matchCriteriaId": "6EFEC96B-CF83-4A2E-8C55-3E783955D53C", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:19.0.3:*:*:*:*:*:*:*", "matchCriteriaId": "D93C6190-3ED3-410B-904A-0EB485FE3709", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:19.0.4:*:*:*:*:*:*:*", "matchCriteriaId": "458E325D-D18D-4A16-A5A2-A69181379E86", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:19.0.5:*:*:*:*:*:*:*", "matchCriteriaId": "99C9803C-442D-4DF2-A609-2356B18BB9F4", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:19.0.6:*:*:*:*:*:*:*", "matchCriteriaId": "26ED6A61-207B-4160-B784-267DEB4065EF", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:19.0.7:*:*:*:*:*:*:*", "matchCriteriaId": "85638F71-3391-48B5-A663-1CC4CCE0D528", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:19.1:*:*:*:*:*:*:*", "matchCriteriaId": "65C4404D-1AE2-4086-A208-00A6C90B89DC", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:19.1.1:*:*:*:*:*:*:*", "matchCriteriaId": "080357EA-115B-465B-85B3-E13A1DBFA68A", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:19.1.2:*:*:*:*:*:*:*", "matchCriteriaId": "0969525E-46CE-4276-BFFC-5124D5595B15", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:19.1.3:*:*:*:*:*:*:*", "matchCriteriaId": "6F0AD8C3-804E-4F3C-A4D7-14D6B4CCEE2C", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:19.1.4:*:*:*:*:*:*:*", "matchCriteriaId": "E5B43FDE-2F43-4816-BFC6-4832DFAE335B", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:19.1.5:*:*:*:*:*:*:*", "matchCriteriaId": "0BDC0799-3FDB-4D22-8F9C-0B6A30AB1DAF", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:19.1.6:*:*:*:*:*:*:*", "matchCriteriaId": "2E7C39A0-1722-4A4F-8CE2-6E530436EC1E", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:19.1.6.1:*:*:*:*:*:*:*", "matchCriteriaId": "AB445D4E-65A1-4622-B829-A8C817468CCE", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:19.2:*:*:*:*:*:*:*", "matchCriteriaId": "F2735454-F3F4-41CB-B9F5-C5A87209DF75", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:19.2.1:*:*:*:*:*:*:*", "matchCriteriaId": "9D863CF1-0C73-422B-A691-6E3C59437A4C", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:19.2.2:*:*:*:*:*:*:*", "matchCriteriaId": "519FA03F-DBB5-473D-9639-E7AFBAC68085", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:19.2.3:*:*:*:*:*:*:*", "matchCriteriaId": "A6E72638-F727-4F97-B120-C8AB18722397", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:19.2.3.1:*:*:*:*:*:*:*", "matchCriteriaId": "82655C28-E8A1-46DC-BF81-D39F8DC28076", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:19.3:*:*:*:*:*:*:*", "matchCriteriaId": "81635635-F7D0-44E1-AAF4-C684AB5F39BF", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:19.3.1:*:*:*:*:*:*:*", "matchCriteriaId": "E8E54482-BF5D-40F0-8A6F-D3DE092FE7A5", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:19.3.2:*:*:*:*:*:*:*", "matchCriteriaId": "E6479F59-6109-4068-84FD-10C704C940CA", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:19.3.3:*:*:*:*:*:*:*", "matchCriteriaId": "A46E4C9D-A5D0-450F-8DF5-D395A8BB0765", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:19.3.4:*:*:*:*:*:*:*", "matchCriteriaId": "52350DE0-E314-4B57-8822-1E73FF9E4C5B", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:19.3.5:*:*:*:*:*:*:*", "matchCriteriaId": "233C2B9B-2F0B-492F-AB10-5037EDBCB748", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:19.3.6:*:*:*:*:*:*:*", "matchCriteriaId": "B22917E3-17CC-48BF-8859-EA9A48DA64C3", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:19.3.6.1:*:*:*:*:*:*:*", "matchCriteriaId": "FF7F1E13-354F-47FE-8314-733E1E7BB9CD", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:19.3.6.2:*:*:*:*:*:*:*", "matchCriteriaId": "43D2A8BC-06E3-4227-A7A9-12D1AE65B0E3", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:19.3.6.3:*:*:*:*:*:*:*", "matchCriteriaId": "E75BC21E-5A80-408D-B9FD-08253E9A98C6", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:19.3.6.4:*:*:*:*:*:*:*", "matchCriteriaId": "1333ABAF-7DD7-4990-AB9B-CA143F6F80F6", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:19.3.6.5:*:*:*:*:*:*:*", "matchCriteriaId": "185444CB-0EBE-451A-BED3-3C5B74C1FFBD", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:19.3.6.6:*:*:*:*:*:*:*", "matchCriteriaId": "94C0D854-DAFE-4301-BA10-58006FABAA4A", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:19.3.6.7:*:*:*:*:*:*:*", "matchCriteriaId": "A9A67CEE-517E-4FF1-865D-4CE7D176EE6E", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:19.3.6.8:*:*:*:*:*:*:*", "matchCriteriaId": "6007D79F-B7C6-4155-BED3-DC6767B6D8CB", "vulnerable": true}, {"criteria": "cpe:2.3:a:erlang:erlang\\/otp:19.3.6.9:*:*:*:*:*:*:*", "matchCriteriaId": "CF66D3B4-24B3-436C-B156-B59AAD20B294", "vulnerable": true}], "negate": false, "operator": "OR"}]}], "cveTags": [], "descriptions": [{"lang": "en", "value": "An issue was discovered in Erlang/OTP 18.x. Erlang's generation of compiled regular expressions is vulnerable to a heap overflow. Regular expressions using a malformed extpattern can indirectly specify an offset that is used as an array index. This ordinal permits arbitrary regions within the erts_alloc arena to be both read and written to."}, {"lang": "es", "value": "Se ha descubierto un problema en Erlang/OTP 18.x. La generaci\u00f3n de expresiones regulares compiladas en Erlang es vulnerable a un desbordamiento de memoria din\u00e1mica. Las expresiones regulares que utilizan un extpattern mal formado pueden especificar indirectamente un desplazamiento que es utilizado como un \u00edndice del array. Este ordinal permite retiones arbitrarias dentro de la pista erts_alloc tanto para ser le\u00eddo y escrito."}], "id": "CVE-2016-10253", "lastModified": "2025-04-20T01:37:25.860", "metrics": {"cvssMetricV2": [{"acInsufInfo": true, "baseSeverity": "HIGH", "cvssData": {"accessComplexity": "LOW", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "PARTIAL", "baseScore": 7.5, "confidentialityImpact": "PARTIAL", "integrityImpact": "PARTIAL", "vectorString": "AV:N/AC:L/Au:N/C:P/I:P/A:P", "version": "2.0"}, "exploitabilityScore": 10.0, "impactScore": 6.4, "obtainAllPrivilege": false, "obtainOtherPrivilege": false, "obtainUserPrivilege": false, "source": "nvd@nist.gov", "type": "Primary", "userInteractionRequired": false}], "cvssMetricV30": [{"cvssData": {"attackComplexity": "LOW", "attackVector": "NETWORK", "availabilityImpact": "HIGH", "baseScore": 9.8, "baseSeverity": "CRITICAL", "confidentialityImpact": "HIGH", "integrityImpact": "HIGH", "privilegesRequired": "NONE", "scope": "UNCHANGED", "userInteraction": "NONE", "vectorString": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H", "version": "3.0"}, "exploitabilityScore": 3.9, "impactScore": 5.9, "source": "nvd@nist.gov", "type": "Primary"}]}, "published": "2017-03-18T20:59:00.127", "references": [{"source": "cve@mitre.org", "tags": ["Third Party Advisory"], "url": "https://github.com/erlang/otp/pull/1108"}, {"source": "cve@mitre.org", "tags": ["Third Party Advisory"], "url": "https://usn.ubuntu.com/3571-1/"}, {"source": "af854a3a-2127-422b-91ae-364da2661108", "tags": ["Third Party Advisory"], "url": "https://github.com/erlang/otp/pull/1108"}, {"source": "af854a3a-2127-422b-91ae-364da2661108", "tags": ["Third Party Advisory"], "url": "https://usn.ubuntu.com/3571-1/"}], "sourceIdentifier": "cve@mitre.org", "vulnStatus": "Deferred", "weaknesses": [{"description": [{"lang": "en", "value": "CWE-119"}], "source": "nvd@nist.gov", "type": "Primary"}]}