RLSA-2023:3147
Dashboard / Vulnerabilities / RLSA-2023:3147
Summary: Important: apr-util security update
Details: The Apache Portable Runtime (APR) is a portability library used by the Apache HTTP Server and other projects. apr-util is a library which provides additional utility interfaces for APR; including support for XML parsing, LDAP, database interfaces, URI parsing, and more. Security Fix(es): * apr-util: out-of-bounds writes in the apr_base64 (CVE-2022-25147) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
References: https://errata.rockylinux.org/RLSA-2023:3147, https://bugzilla.redhat.com/show_bug.cgi?id=2169652
Affected packages
Package
Name: apr-util
Purl: pkg:rpm/rocky-linux/apr-util?distro=rocky-linux-9&epoch=0
Affected ranges
Type: ECOSYSTEM
Events:
