Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.812316
Category:Red Hat Local Security Checks
Title:RedHat Update for apr RHSA-2017:3270-01
Summary:The remote host is missing an update for the 'apr'; package(s) announced via the referenced advisory.
Description:Summary:
The remote host is missing an update for the 'apr'
package(s) announced via the referenced advisory.

Vulnerability Insight:
The Apache Portable Runtime (APR) is a
portability library used by the Apache HTTP Server and other projects. It
provides a free library of C data structures and routines. Security Fix(es): *
An out-of-bounds array dereference was found in apr_time_exp_get(). An attacker
could abuse an unvalidated usage of this function to cause a denial of service
or potentially lead to data leak. (CVE-2017-12613)

Affected Software/OS:
apr on Red Hat Enterprise Linux Desktop (v. 6),
Red Hat Enterprise Linux Server (v. 6),
Red Hat Enterprise Linux Server (v. 7),
Red Hat Enterprise Linux Workstation (v. 6)

Solution:
Please Install the Updated Packages.

CVSS Score:
3.6

CVSS Vector:
AV:L/AC:L/Au:N/C:P/I:N/A:P

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2017-12613
BugTraq ID: 101560
http://www.securityfocus.com/bid/101560
https://lists.apache.org/thread.html/12489f2e4a9f9d390235c16298aca0d20658789de80d553513977f13%40%3Cannounce.apache.org%3E
https://lists.apache.org/thread.html/rb1f3c85f50fbd924a0051675118d1609e57957a02ece7facb723155b@%3Cannounce.apache.org%3E
https://lists.apache.org/thread.html/rcc48a0acebbd74bbdeebc02ff228bb72c0631b21823fffe27d4691e9@%3Ccommits.apr.apache.org%3E
https://lists.apache.org/thread.html/r270dd5022db194b78acaf509216a33c85f3da43757defa05cc766339@%3Ccommits.apr.apache.org%3E
https://lists.apache.org/thread.html/ra2868b53339a6af65577146ad87016368c138388b09bff9d2860f50e@%3Cdev.apr.apache.org%3E
https://lists.apache.org/thread.html/ra38094406cc38a05218ebd1158187feda021b0c3a1df400bbf296af8@%3Cdev.apr.apache.org%3E
https://lists.debian.org/debian-lts-announce/2017/11/msg00005.html
https://lists.debian.org/debian-lts-announce/2022/01/msg00023.html
http://www.openwall.com/lists/oss-security/2021/08/23/1
RedHat Security Advisories: RHSA-2017:3270
https://access.redhat.com/errata/RHSA-2017:3270
RedHat Security Advisories: RHSA-2017:3475
https://access.redhat.com/errata/RHSA-2017:3475
RedHat Security Advisories: RHSA-2017:3476
https://access.redhat.com/errata/RHSA-2017:3476
RedHat Security Advisories: RHSA-2017:3477
https://access.redhat.com/errata/RHSA-2017:3477
RedHat Security Advisories: RHSA-2018:0316
https://access.redhat.com/errata/RHSA-2018:0316
RedHat Security Advisories: RHSA-2018:0465
https://access.redhat.com/errata/RHSA-2018:0465
RedHat Security Advisories: RHSA-2018:0466
https://access.redhat.com/errata/RHSA-2018:0466
RedHat Security Advisories: RHSA-2018:1253
https://access.redhat.com/errata/RHSA-2018:1253
http://www.securitytracker.com/id/1042004
CopyrightCopyright (C) 2017 Greenbone AG

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.