I've been reading a lot of posts about PCRE mismatches, and the recent patch to fix this, but it seems like there are cases this may or may not be a problem.

At best this is just an annoyance in the log files, but at worst this can cause core dumps of apache.

I have both apache and mod_sec set to use the OS pcre & apr libs (both from RHEL 5.8), but I still get the mismatch errors. The team that builds our internal apache distribution has confirmed they are dynamically linked via ld (which shows matching libs).

In this scenario, what would cause the pcre mismatch error?

In what cases can the mismatch prove fatal vs. which cases is it just a false alarm? How can I test for the fatal cases?

