Back

CRITICAL

Apache Portable Runtime (APR): Windows out-of-bounds write in apr_socket_sendv function

Published Jan 31, 2023

Description

On Windows, Apache Portable Runtime 1.7.0 and earlier may write beyond the end of a stack based buffer in apr_socket_sendv(). This is a result of integer overflow.

Affected products

Remediation

No remediation recorded yet.

Metrics

References (5)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner apache
Published Jan 31, 2023
Updated Mar 27, 2025
Reserved Apr 1, 2022
CISA Vulnrichment
Updated Mar 27, 2025
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity Moderate
Public date Jan 31, 2023