Out-of-bounds read in APR-iconv and Apache Portable Runtime - CVE-2017-12613

 

Out-of-bounds read in APR-iconv and Apache Portable Runtime - CVE-2017-12613

Published: November 30, 2017 / Updated: February 2, 2023


Vulnerability identifier: #VU9477
CSH Severity: Medium
CVSS v4: 6.9 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:L/SC:N/SI:N/SA:N]
CVE-ID: CVE-2017-12613
CWE-ID: CWE-200
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to obtain potentially sensitive information on the target system.

The weakness exists due to an out-of-bounds array dereference in the apr_time_exp_get() function. A remote attacker can access prior out-of-bounds memory, reveal the contents of a different static heap value and read arbitrary files or cause the application to crash.

Affected software

APR-iconv
Apache Portable Runtime
Amazon Linux AMI
Arch Linux
Red Hat Enterprise Linux for Scientific Computing
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux Desktop
Red Hat Enterprise Linux for x86_64
Red Hat Enterprise Linux Workstation
Red Hat Enterprise Linux Server
Red Hat Enterprise Linux EUS Compute Node
Red Hat Enterprise Linux for Power
macOS
Oracle Solaris
Slackware Linux
openEuler
Fedora
JBoss Core Services
IBM API Connect

apr
apr-debuginfo
apr-devel
apr-debugsource
apr-help
Flex System Chassis Management Module (CMM)

How to mitigate CVE-2017-12613

Update to version 1.6.3.

APR-iconv - update to 1.2.2
Apache Portable Runtime - update to 1.6.3
IBM API Connect - update to 5.0.8.12
apr - addressed in versions 1.6.3-1.fc25, 1.6.3-1.fc26, 1.6.3-1.fc27
apr - update to 1.7.0-3
apr-debuginfo - update to 1.7.0-3
apr-devel - update to 1.7.0-3
apr-debugsource - update to 1.7.0-3
apr-help - update to 1.7.0-3
apr - update to 1.7.2
apr - update to 1.7.2-2
Flex System Chassis Management Module (CMM) - update to 2pet16d-2.5.13d

External References

Related Security Bulletins