Heap Overflow in Apache Portable Runtime Utility memcached client (1.3.0-1.6.3)
CVE-2026-34502 Published on August 6, 2026

Apache Portable Runtime Utility: Heap buffer overflow in APR memcached client
Heap-based Buffer Overflow vulnerability in Apache Portable Runtime Utility memcached client This issue affects Apache Portable Runtime Utility: from 1.3.0 through 1.6.3.

Vendor Advisory NVD

Timeline

reported

fixed in 1.6.x by r1936813 132 days later.

1.6.4 released

Weakness Type

Heap-based Buffer Overflow

A heap overflow condition is a buffer overflow, where the buffer that can be overwritten is allocated in the heap portion of memory, generally meaning that the buffer was allocated using a routine such as malloc().


Affected Versions

Apache Software Foundation Apache Portable Runtime Utility: