{"id":"openSUSE-SU-2026:20512-1","summary":"Security update for pcre2","details":"This update for pcre2 fixes the following issue:\n\n- CVE-2025-58050: integer overflow leads to heap buffer overread in match_ref due to missing boundary restoration in SCS\n  (bsc#1248842).\n","modified":"2026-04-22T20:09:53.765745Z","published":"2026-04-10T18:29:30Z","related":["CVE-2025-58050"],"upstream":["CVE-2025-58050"],"references":[{"type":"ADVISORY"},{"type":"REPORT","url":"https://bugzilla.suse.com/1248842"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-58050"}],"affected":[{"package":{"name":"pcre2","ecosystem":"openSUSE:Leap 16.0","purl":"pkg:rpm/opensuse/pcre2&distro=openSUSE%20Leap%2016.0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"10.45-160000.3.1"}]}],"ecosystem_specific":{"binaries":[{"pcre2-devel":"10.45-160000.3.1","pcre2-doc":"10.45-160000.3.1","pcre2-tools":"10.45-160000.3.1","libpcre2-16-0":"10.45-160000.3.1","libpcre2-32-0":"10.45-160000.3.1","libpcre2-8-0":"10.45-160000.3.1","libpcre2-posix3":"10.45-160000.3.1","pcre2-devel-static":"10.45-160000.3.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/openSUSE-SU-2026:20512-1.json"}}],"schema_version":"1.7.5"}