Univention Bugzilla – Bug 54372
apr: Multiple issues (4.4)
Last modified: 2022-01-26 16:57:46 CET
New Debian apr 1.5.2-5+deb9u1 fixes: This update addresses the following issue: * Out-of-bounds array deref in apr_time_exp*() functions (CVE-2017-12613)
--- mirror/ftp/4.3/unmaintained/4.3-0/source/apr_1.5.2-5.dsc +++ apt/ucs_4.4-0-errata4.4-8/source/apr_1.5.2-5+deb9u1.dsc @@ -1,3 +1,9 @@ +1.5.2-5+deb9u1 [Mon, 24 Jan 2022 18:03:02 +0100] Thorsten Alteholz <debian@alteholz.de>: + + * Non-maintainer upload by the LTS Team. + * CVE-2017-12613 + invalid date fields may result in out of bounds memory access + 1.5.2-5 [Sat, 10 Dec 2016 17:41:09 +0100] Stefan Fritsch <sf@debian.org>: [ Helmut Grohne ] <http://piuparts.knut.univention.de/4.4-8/#666244877198745572>
OK: yaml OK: announce_errata OK: patch OK: piuparts
<https://errata.software-univention.de/#/?erratum=4.4x1159>