DSA-4785-1 raptor2 -- security update

Related Vulnerabilities: CVE-2017-18926  

It was discovered that raptor2, an RDF parser library, is prone to heap-based buffer overflow flaws, which could result in denial of service, or potentially the execution of arbitrary code, if a specially crafted file is processed. For the stable distribution (buster), this problem has been fixed in version 2.0.14-1.1~deb10u1. We recommend that you upgrade your raptor2 packages. For the detailed security status of raptor2 please refer to its security tracker page at: https://security-tracker.debian.org/tracker/raptor2

Debian Security Advisory

DSA-4785-1 raptor2 -- security update

Date Reported:
07 Nov 2020
Affected Packages:
raptor2
Vulnerable:
Yes
Security database references:
In the Debian bugtracking system: Bug 973889.
In Mitre's CVE dictionary: CVE-2017-18926.
More information:

It was discovered that raptor2, an RDF parser library, is prone to heap-based buffer overflow flaws, which could result in denial of service, or potentially the execution of arbitrary code, if a specially crafted file is processed.

For the stable distribution (buster), this problem has been fixed in version 2.0.14-1.1~deb10u1.

We recommend that you upgrade your raptor2 packages.

For the detailed security status of raptor2 please refer to its security tracker page at: https://security-tracker.debian.org/tracker/raptor2