Vulnerabilities > Apache > Portable Runtime > Critical

DATE CVE VULNERABILITY TITLE RISK
2023-01-31 CVE-2022-28331 Integer Overflow or Wraparound vulnerability in Apache Portable Runtime
On Windows, Apache Portable Runtime 1.7.0 and earlier may write beyond the end of a stack based buffer in apr_socket_sendv().
network
low complexity
apache CWE-190
critical
9.8
2023-01-31 CVE-2022-24963 Integer Overflow or Wraparound vulnerability in Apache Portable Runtime 1.7.0
Integer Overflow or Wraparound vulnerability in apr_encode functions of Apache Portable Runtime (APR) allows an attacker to write beyond bounds of a buffer. This issue affects Apache Portable Runtime (APR) version 1.7.0.
network
low complexity
apache CWE-190
critical
9.8