Package: devscripts
Severity: serious
Version: 2.10.54

The security fixes introduced in 2.10.54 has a regression which should
not migrate to testing.

The regular expression parser always evaluates the entire expression,
making it trivial to create infinite loops with expressions such as
"s/(\d)/$1./g".

Adam




-- 
To unsubscribe, send mail to [email protected].

Reply via email to