Wind River Support Network

HomeDefectsLIN1022-3235
Fixed

LIN1022-3235 : Security Advisory - apr - CVE-2022-28331

Created: Jan 31, 2023    Updated: Jun 16, 2023
Resolved Date: Jun 16, 2023
Found In Version: 10.22.33.1
Fix Version: 10.22.33.7
Severity: Standard
Applicable for: Wind River Linux LTS 22
Component/s: Userspace

Description

On Windows, Apache Portable Runtime 1.7.0 and earlier may write beyond the end of a stack based buffer in apr_socket_sendv(). This is a result of integer overflow.

CREATE(Triage):(User=admin) CVE-2022-28331 (https://nvd.nist.gov/vuln/detail/CVE-2022-28331)

CVEs


Live chat
Online