Out-of-bounds read in APR-iconv and Apache Portable Runtime - CVE-2017-12613
Published: November 30, 2017 / Updated: February 2, 2023
Vulnerability identifier: #VU9477
CSH Severity: Medium
CVSS v4: 6.9 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:L/SC:N/SI:N/SA:N]
CVE-ID: CVE-2017-12613
CWE-ID: CWE-200
Exploitation vector: Remote access
Exploit availability:
No public exploit available
Vulnerability details
The vulnerability allows a remote attacker to obtain potentially sensitive information on the target system.
The weakness exists due to an out-of-bounds array dereference in the apr_time_exp_get() function. A remote attacker can access prior out-of-bounds memory, reveal the contents of a different static heap value and read arbitrary files or cause the application to crash.
The weakness exists due to an out-of-bounds array dereference in the apr_time_exp_get() function. A remote attacker can access prior out-of-bounds memory, reveal the contents of a different static heap value and read arbitrary files or cause the application to crash.
Affected software
APR-iconv
Apache Portable Runtime
Amazon Linux AMI
Arch Linux
Red Hat Enterprise Linux for Scientific Computing
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux Desktop
Red Hat Enterprise Linux for x86_64
Red Hat Enterprise Linux Workstation
Red Hat Enterprise Linux Server
Red Hat Enterprise Linux EUS Compute Node
Red Hat Enterprise Linux for Power
macOS
Oracle Solaris
Slackware Linux
openEuler
Fedora
JBoss Core Services
IBM API Connect
apr
apr-debuginfo
apr-devel
apr-debugsource
apr-help
Flex System Chassis Management Module (CMM)
Apache Portable Runtime
Amazon Linux AMI
Arch Linux
Red Hat Enterprise Linux for Scientific Computing
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux Desktop
Red Hat Enterprise Linux for x86_64
Red Hat Enterprise Linux Workstation
Red Hat Enterprise Linux Server
Red Hat Enterprise Linux EUS Compute Node
Red Hat Enterprise Linux for Power
macOS
Oracle Solaris
Slackware Linux
openEuler
Fedora
JBoss Core Services
IBM API Connect
apr
apr-debuginfo
apr-devel
apr-debugsource
apr-help
Flex System Chassis Management Module (CMM)
How to mitigate CVE-2017-12613
Update to version 1.6.3.
APR-iconv - update to 1.2.2
Apache Portable Runtime - update to 1.6.3
IBM API Connect - update to 5.0.8.12
apr - addressed in versions 1.6.3-1.fc25, 1.6.3-1.fc26, 1.6.3-1.fc27
apr - update to 1.7.0-3
apr-debuginfo - update to 1.7.0-3
apr-devel - update to 1.7.0-3
apr-debugsource - update to 1.7.0-3
apr-help - update to 1.7.0-3
apr - update to 1.7.2
apr - update to 1.7.2-2
Flex System Chassis Management Module (CMM) - update to 2pet16d-2.5.13d
Apache Portable Runtime - update to 1.6.3
IBM API Connect - update to 5.0.8.12
apr - addressed in versions 1.6.3-1.fc25, 1.6.3-1.fc26, 1.6.3-1.fc27
apr - update to 1.7.0-3
apr-debuginfo - update to 1.7.0-3
apr-devel - update to 1.7.0-3
apr-debugsource - update to 1.7.0-3
apr-help - update to 1.7.0-3
apr - update to 1.7.2
apr - update to 1.7.2-2
Flex System Chassis Management Module (CMM) - update to 2pet16d-2.5.13d
External References
Related Security Bulletins
- Information disclosure in Apache Portable Runtime
- Arch Linux update for apr
- Amazon Linux AMI update for apr
- Red Hat update for Apache
- Red Hat update for Apache
- Red Hat update for Apache
- Red Hat update for Apache
- Red Hat update for apache
- Multiple vulnerabilities in Apple MacOS
- Red Hat update for apr
- Multiple vulnerabilities in IBM API Connect
- Slackware Linux update for apr
- Multiple vulnerabilities in Oracle Solaris third-party software
- openEuler update for apr
- Amazon Linux AMI update for apr
- IBM Flex System Chassis Management Module (CMM) update for Apache Portable Runtime APR
- Fedora 27 update for apr
- Fedora 26 update for apr
- Fedora 25 update for apr