Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 492
Alerts This Week
Warning Icon 1 492

Oracle Linux 7 ELSA-2023-3145 Critical: Apr-Util Buffer Overflow Issue

oracle
Calendar Grey May 19, 2023
Scroller Oracle
Oracle Linux Security Notice ELSA-2023-3145 outlines significant patches for apr-util in response to urgent security vulnerabilities.
The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network:

Summary

[1.5.2-6.0.1.1] - Rebuild bumping release [1.5.2-6.1] - Resolves: #2196120 - CVE-2022-25147 apr-util: out-of-bounds writes in the apr_base64

SRPMs

https://oss.oracle.com:443/ol7/SRPMS-updates//apr-util-1.5.2-6.0.1.el7_9.1.src.rpm

x86_64

apr-util-1.5.2-6.0.1.el7_9.1.i686.rpm apr-util-1.5.2-6.0.1.el7_9.1.x86_64.rpm apr-util-devel-1.5.2-6.0.1.el7_9.1.i686.rpm apr-util-devel-1.5.2-6.0.1.el7_9.1.x86_64.rpm apr-util-ldap-1.5.2-6.0.1.el7_9.1.x86_64.rpm apr-util-mysql-1.5.2-6.0.1.el7_9.1.x86_64.rpm apr-util-nss-1.5.2-6.0.1.el7_9.1.x86_64.rpm apr-util-odbc-1.5.2-6.0.1.el7_9.1.x86_64.rpm apr-util-openssl-1.5.2-6.0.1.el7_9.1.x86_64.rpm apr-util-pgsql-1.5.2-6.0.1.el7_9.1.x86_64.rpm apr-util-sqlite-1.5.2-6.0.1.el7_9.1.x86_64.rpm

aarch64

Severity
critical
Lowest
Low
Medium
High
Critical

Related CVEs: CVE-2022-25147

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.