<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 14:53:16 +0000</lastBuildDate>
    <item>
      <title>bdu:2022-05946</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2022-05946</link>
      <description>bdu:2022-05946</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2022-05946</guid>
    </item>
    <item>
      <title>Withdrawn: BELL-CVE-2017-12613 — CVE-2017-12613 does not affect BellSoft software</title>
      <link>https://cve.radiocsirt.org/vuln/bell-cve-2017-12613</link>
      <description>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bell-cve-2017-12613</guid>
    </item>
    <item>
      <title>certfr-2018-avi-339 — De multiples vulnérabilités ont été découvertes dans les produits
Juniper . Certaines d'entre elles permettent à un att…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2018-avi-339</link>
      <description>certfr-2018-avi-339</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2018-avi-339</guid>
    </item>
    <item>
      <title>cnvd-2017-32840</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2017-32840</link>
      <description>cnvd-2017-32840</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2017-32840</guid>
    </item>
    <item>
      <title>EUVD-2026-77220</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-77220</link>
      <description>EUVD-2026-77220</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-77220</guid>
    </item>
    <item>
      <title>fkie_cve-2017-12613</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2017-12613</link>
      <description>&lt;p&gt;When apr_time_exp*() or apr_os_exp_time*() functions are invoked with an invalid month field value in Apache Portable Runtime APR 1.6.2 and prior, out of bounds memory may be accessed in converting this value to an apr_time_exp_t value, potentially revealing the contents of a different static heap value or resulting in program termination, and may represent an information disclosure or denial of service vulnerability to applications which call these APR functions with unvalidated external input.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;When apr_time_exp*() or apr_os_exp_time*() functions are invoked with an invalid month field value in Apache Portable Runtime APR 1.6.2 and prior, out of bounds memory may be accessed in converting this value to an apr_time_exp_t value, potentially revealing the contents of a different static heap value or resulting in program termination, and may represent an information disclosure or denial of service vulnerability to applications which call these APR functions with unvalidated external input.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2017-12613</guid>
    </item>
    <item>
      <title>GHSA-v99m-xvmc-cgf3</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-v99m-xvmc-cgf3</link>
      <description>&lt;p&gt;When apr_time_exp*() or apr_os_exp_time*() functions are invoked with an invalid month field value in Apache Portable Runtime APR 1.6.2 and prior, out of bounds memory may be accessed in converting this value to an apr_time_exp_t value, potentially revealing the contents of a different static heap value or resulting in program termination, and may represent an information disclosure or denial of service vulnerability to applications which call these APR functions with unvalidated external input.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;When apr_time_exp*() or apr_os_exp_time*() functions are invoked with an invalid month field value in Apache Portable Runtime APR 1.6.2 and prior, out of bounds memory may be accessed in converting this value to an apr_time_exp_t value, potentially revealing the contents of a different static heap value or resulting in program termination, and may represent an information disclosure or denial of service vulnerability to applications which call these APR functions with unvalidated external input.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-v99m-xvmc-cgf3</guid>
    </item>
    <item>
      <title>gsd-2017-12613</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2017-12613</link>
      <description>gsd-2017-12613</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2017-12613</guid>
    </item>
    <item>
      <title>msrc_CVE-2017-12613 — When apr_time_exp*() or apr_os_exp_time*() functions are invoked with an invalid month field value in Apache Portable R…</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2017-12613</link>
      <description>msrc_CVE-2017-12613</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2017-12613</guid>
    </item>
    <item>
      <title>OESA-2021-1096 — apr security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2021-1096</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:20.03-LTS: apr, openEuler:20.03-LTS-SP1: apr&lt;/p&gt;
&lt;p&gt;The mission of the Apache Portable Runtime (APR) project is to create and maintain software libraries that provide a predictable and consistent interface to underlying platform-specific implementations. The primary goal is to provide an API to which software developers may code and be assured of predictable if not identical behaviour regardless of the platform on which their software is built, relieving them of the need to code special-case conditions to work around or take advantage of platform-specific deficiencies or features.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;An out-of-bounds array dereference was found in apr_time_exp_get(). An attacker could abuse an unvalidated usage of this function to cause a denial of service or potentially lead to data leak.(CVE-2017-12613)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:20.03-LTS: apr, openEuler:20.03-LTS-SP1: apr&lt;/p&gt;
&lt;p&gt;The mission of the Apache Portable Runtime (APR) project is to create and maintain software libraries that provide a predictable and consistent interface to underlying platform-specific implementations. The primary goal is to provide an API to which software developers may code and be assured of predictable if not identical behaviour regardless of the platform on which their software is built, relieving them of the need to code special-case conditions to work around or take advantage of platform-specific deficiencies or features.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;An out-of-bounds array dereference was found in apr_time_exp_get(). An attacker could abuse an unvalidated usage of this function to cause a denial of service or potentially lead to data leak.(CVE-2017-12613)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2021-1096</guid>
    </item>
    <item>
      <title>RHSA-2017:3270 — Red Hat Security Advisory: apr security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2017:3270</link>
      <description>&lt;p&gt;apr: Out-of-bounds array deref in apr_time_exp*() functions&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;apr: Out-of-bounds array deref in apr_time_exp*() functions&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2017:3270</guid>
    </item>
    <item>
      <title>RHSA-2017:3475 — Red Hat Security Advisory: Red Hat JBoss Core Services Apache HTTP Server 2.4.23 security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2017:3475</link>
      <description>&lt;p&gt;httpd: ap_get_basic_auth_pw() authentication bypass httpd: mod_ssl NULL pointer dereference httpd: mod_mime buffer overread httpd: Use-after-free by limiting unregistered HTTP method (Optionsbleed) apr: Out-of-bounds array deref in apr_time_exp*() functions&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;httpd: ap_get_basic_auth_pw() authentication bypass httpd: mod_ssl NULL pointer dereference httpd: mod_mime buffer overread httpd: Use-after-free by limiting unregistered HTTP method (Optionsbleed) apr: Out-of-bounds array deref in apr_time_exp*() functions&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2017:3475</guid>
    </item>
    <item>
      <title>SUSE-SU-2018:1196-1 — Security update for libapr1</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2018:1196-1</link>
      <description>&lt;p&gt;Security update for libapr1&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for libapr1&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2018:1196-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2017-12613</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2017-12613</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: apr, Ubuntu:Pro:16.04:LTS: apr&lt;/p&gt;
&lt;p&gt;When apr_time_exp*() or apr_os_exp_time*() functions are invoked with an invalid month field value in Apache Portable Runtime APR 1.6.2 and prior, out of bounds memory may be accessed in converting this value to an apr_time_exp_t value, potentially revealing the contents of a different static heap value or resulting in program termination, and may represent an information disclosure or denial of service vulnerability to applications which call these APR functions with unvalidated external input.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: apr, Ubuntu:Pro:16.04:LTS: apr&lt;/p&gt;
&lt;p&gt;When apr_time_exp*() or apr_os_exp_time*() functions are invoked with an invalid month field value in Apache Portable Runtime APR 1.6.2 and prior, out of bounds memory may be accessed in converting this value to an apr_time_exp_t value, potentially revealing the contents of a different static heap value or resulting in program termination, and may represent an information disclosure or denial of service vulnerability to applications which call these APR functions with unvalidated external input.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2017-12613</guid>
    </item>
    <item>
      <title>WID-SEC-W-2023-1424 — Xerox FreeFlow Print Server für Solaris: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-1424</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Xerox FreeFlow Print Server ausnutzen, um die Vertraulichkeit, Verfügbarkeit und Integrität des Systems zu gefährden.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Xerox FreeFlow Print Server ausnutzen, um die Vertraulichkeit, Verfügbarkeit und Integrität des Systems zu gefährden.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2023-1424</guid>
    </item>
  </channel>
</rss>
