Vulnerabilities > Apache > Portable Runtime Utility > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-01-31 CVE-2022-25147 Integer Overflow or Wraparound vulnerability in Apache Portable Runtime Utility
Integer Overflow or Wraparound vulnerability in apr_base64 functions of Apache Portable Runtime Utility (APR-util) allows an attacker to write beyond bounds of a buffer. This issue affects Apache Portable Runtime Utility (APR-util) 1.6.1 and prior versions.
network
low complexity
apache CWE-190
6.5
2017-10-24 CVE-2017-12618 Out-of-bounds Read vulnerability in Apache Portable Runtime Utility
Apache Portable Runtime Utility (APR-util) 1.6.0 and prior fail to validate the integrity of SDBM database files used by apr_sdbm*() functions, resulting in a possible out of bound read access.
local
high complexity
apache CWE-125
4.7