CVE-2022-28331 Information

Description

On Windows Apache Portable Runtime 1.7.0 and earlier may write beyond the end of a stack based buffer in apr_socket_sendv(). This is a result of integer overflow.

Reference

https://lists.apache.org/thread/5pfdfn7h0vsdo5xzjn97vghp0x42jj2r

Share on: