Vulnerability CVE-2017-12613


Published: 2017-10-23   Modified: 2017-10-24

Description:
When apr_time_exp*() or apr_os_exp_time*() functions are invoked with an invalid month field value in Apache Portable Runtime APR 1.6.2 and prior, out of bounds memory may be accessed in converting this value to an apr_time_exp_t value, potentially revealing the contents of a different static heap value or resulting in program termination, and may represent an information disclosure or denial of service vulnerability to applications which call these APR functions with unvalidated external input.

Type:

CWE-125

(Out-of-bounds Read)

CVSS2 => (AV:L/AC:L/Au:N/C:P/I:N/A:P)

CVSS Base Score
Impact Subscore
Exploitability Subscore
3.6/10
4.9/10
3.9/10
Exploit range
Attack complexity
Authentication
Local
Low
No required
Confidentiality impact
Integrity impact
Availability impact
Partial
None
Partial
Affected software
Apache -> Portable runtime 

 References:
http://www.apache.org/dist/apr/Announcement1.x.html
http://www.securityfocus.com/bid/101560
http://www.securitytracker.com/id/1042004
https://access.redhat.com/errata/RHSA-2017:3270
https://access.redhat.com/errata/RHSA-2017:3475
https://access.redhat.com/errata/RHSA-2017:3476
https://access.redhat.com/errata/RHSA-2017:3477
https://access.redhat.com/errata/RHSA-2018:0316
https://access.redhat.com/errata/RHSA-2018:0465
https://access.redhat.com/errata/RHSA-2018:0466
https://access.redhat.com/errata/RHSA-2018:1253
https://lists.apache.org/thread.html/12489f2e4a9f9d390235c16298aca0d20658789de80d553513977f13%40%3Cannounce.apache.org%3E
https://lists.debian.org/debian-lts-announce/2017/11/msg00005.html
https://svn.apache.org/viewvc?view=revision&revision=1807976

Copyright 2024, cxsecurity.com

 

Back to Top