apr-1.7.0-12.el9_3

エラータID: AXSA:2023-7043:05

Release date: 
Thursday, December 21, 2023 - 02:47
Subject: 
apr-1.7.0-12.el9_3
Affected Channels: 
MIRACLE LINUX 9 for x86_64
Severity: 
Moderate
Description: 

The mission of the Apache Portable Runtime (APR) is to provide a free library of C data structures and routines, forming a system portability layer to as many operating systems as possible, including Unices, MS Win32, BeOS and OS/2.

Security Fix(es):

* apr: integer overflow/wraparound in apr_encode (CVE-2022-24963)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

CVE-2022-24963
Integer Overflow or Wraparound vulnerability in apr_encode functions of Apache Portable Runtime (APR) allows an attacker to write beyond bounds of a buffer. This issue affects Apache Portable Runtime (APR) version 1.7.0.

Solution: 

Update packages.

Additional Info: 

N/A

Download: 

SRPMS
  1. apr-1.7.0-12.el9_3.src.rpm
    MD5: e38efe8f6e646823bb3c5c462be33676
    SHA-256: e7fd9d85e56eba43022c6c866894ea915167610393955d3ee345a5e0bacbafae
    Size: 881.46 kB

Asianux Server 9 for x86_64
  1. apr-1.7.0-12.el9_3.i686.rpm
    MD5: 07a7cf997793096859b34fcd6ba45747
    SHA-256: 1e19af50d2e86a6fb45639c04cf4747a901ed245c59e3274fce45eb5bbac146d
    Size: 133.25 kB
  2. apr-1.7.0-12.el9_3.x86_64.rpm
    MD5: 907347378415e04c2f7f1d7e34c65a09
    SHA-256: dd095575f0b7c9bd918ebe9287fb827db620b0b9ebb4fde3a57fd06010a4348f
    Size: 122.16 kB
  3. apr-devel-1.7.0-12.el9_3.i686.rpm
    MD5: e1a244ff5b6d9ac7d817b4311bb0f455
    SHA-256: a97ffaec9bee99beb74bbee779d5779c2b7a3e83c3e51bfcf27024add6a08543
    Size: 217.69 kB
  4. apr-devel-1.7.0-12.el9_3.x86_64.rpm
    MD5: 9c7069b359ad88573aa0c676179f2119
    SHA-256: 312baffb6f76f5cfce5fd163d6098939a33982b3244bcfc9789b21aae88b9d09
    Size: 217.72 kB