CVE-2022-25147

CVSS V2 None CVSS V3 None
Description
Integer Overflow or Wraparound vulnerability in apr_base64 functions of Apache Portable Runtime Utility (APR-util) allows an attacker to write beyond bounds of a buffer. This issue affects Apache Portable Runtime Utility (APR-util) 1.6.1 and prior versions.
Overview
  • CVE ID
  • CVE-2022-25147
  • Assigner
  • security@apache.org
  • Vulnerability Status
  • Analyzed
  • Published Version
  • 2023-01-31T16:15:08
  • Last Modified Date
  • 2023-02-07T21:46:35
CPE Configuration (Product)
CPE Vulnerable Operator Version Start Version End
cpe:2.3:a:apache:portable_runtime_utility:*:*:*:*:*:*:*:* 1 OR 1.6.1
References
Reference URL Reference Tags
https://lists.apache.org/thread/np5gjqlohc4f62lr09vrn61vl44cylh8 Mailing List Vendor Advisory
History
Created Old Value New Value Data Type Notes
2023-04-17 06:59:58 Added to TrackCVE
2023-04-17 07:00:00 Weakness Enumeration new