Bug ID 1207871
Summary VUL-0: CVE-2022-28331: apr: out-of bounds write in stack based buffer in apr_socket_sendv()
Classification openSUSE
Product openSUSE Distribution
Version Leap 15.4
Hardware Other
OS Other
Status NEW
Severity Normal
Priority P5 - None
Component Security
Assignee david.anes@suse.com
Reporter Andreas.Stieger@gmx.de
QA Contact security-team@suse.de
CC pgajdos@suse.com
Found By ---
Blocker ---

https://downloads.apache.org/apr/CHANGES-APR-1.7

SECURITY: CVE-2022-28331 (cve.mitre.org)
On Windows, Apache Portable Runtime 1.7.0 and earlier may write beyond 
the end of a stack based buffer in apr_socket_sendv(). This is a result 
of integer overflow.


You are receiving this mail because: