Gentoo Linux Security Advisory GLSA 200711-28 – Tavis Ormandy and Will Drewry (Google Security Team) discovered a heap-based buffer overflow in the Regular Expression engine (regcomp.c) that occurs when switching from byte to Unicode (UTF-8) characters in a regular expression. Versions less than 5.8.8-r4 are affected.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/61151/glsa-200711-28.txt
Source: https://packetstormsecurity.com/files/61151/Gentoo-Linux-Security-Advisory-200711-28.html

