[CLSA-2025:1762338135] apr: Fix of CVE-2022-24963
Type:
security
Severity:
Critical
Release date:
2025-11-05 10:22:19 UTC
Description:
- CVE-2022-24963: Fix integer overflow in apr_encode functions that could lead to out-of-bounds write
Updated packages:
  • apr-1.7.0-11.el9.tuxcare.els1.i686.rpm
    sha:9381707dd84fbe2c2d2efabc27a6f466274ea9fad98a8849589dccf51de7f3b8
  • apr-1.7.0-11.el9.tuxcare.els1.x86_64.rpm
    sha:9c9abaf2de4f9c7a8fe1f945135106d1ac4bbfb4bfccac0da8af9374f274c97e
  • apr-devel-1.7.0-11.el9.tuxcare.els1.i686.rpm
    sha:509fb3e30fe0a951ee71cf70ec881c07abcafbab7a960a2038728c7f4ada7b90
  • apr-devel-1.7.0-11.el9.tuxcare.els1.x86_64.rpm
    sha:b8b54e25cee7e28049cdd43e6dbceac5130b38c09768eb965029b1a601b70fe9
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.