grep is the GNU regular expression matcher.
A heap buffer overrun has been fixed in the bmexec_trans function in kwset.c.
A local user can cause Denial of Service.
There is no known workaround at this time.
All grep users should upgrade to the latest version:
# emerge --sync
# emerge --ask --oneshot --verbose ">=sys-apps/grep-2.21-r1"