Heap Overflow in Apache Portable Runtime Utility memcached client (1.3.0-1.6.3)
CVE-2026-34502 Published on August 6, 2026
Apache Portable Runtime Utility: Heap buffer overflow in APR memcached client
Heap-based Buffer Overflow vulnerability in Apache Portable Runtime Utility memcached client
This issue affects Apache Portable Runtime Utility: from 1.3.0 through 1.6.3.
Timeline
reported
fixed in 1.6.x by r1936813 132 days later.
1.6.4 released
Weakness Type
Heap-based Buffer Overflow
A heap overflow condition is a buffer overflow, where the buffer that can be overwritten is allocated in the heap portion of memory, generally meaning that the buffer was allocated using a routine such as malloc().
Affected Versions
Apache Software Foundation Apache Portable Runtime Utility:- Version 1.3.0, <= 1.6.3 is affected.