Unrated severityNVD Advisory· Published Jan 31, 2023· Updated Mar 27, 2025
Apache Portable Runtime (APR): Windows out-of-bounds write in apr_socket_sendv function
CVE-2022-28331
Description
On Windows, Apache Portable Runtime 1.7.0 and earlier may write beyond the end of a stack based buffer in apr_socket_sendv(). This is a result of integer overflow.
Affected products
3<=1.7.0+ 1 more
- (no CPE)range: <=1.7.0
- (no CPE)range: 0
Patches
Vulnerability mechanics
References
1- lists.apache.org/thread/5pfdfn7h0vsdo5xzjn97vghp0x42jj2rmitrevendor-advisory
News mentions
0No linked articles in our index yet.