Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2017-18926

Опубликовано: 07 июн. 2017
Источник: redhat
CVSS3: 7.1
EPSS Низкий

Описание

raptor_xml_writer_start_element_common in raptor_xml_writer.c in Raptor RDF Syntax Library 2.0.15 miscalculates the maximum nspace declarations for the XML writer, leading to heap-based buffer overflows (sometimes seen in raptor_qname_format_as_xml).

Отчет

LibreOffice as shipped with Red Hat Enterprise Linux 8 is notaffected by this flaw as the version of raptor used in LibreOffice already has the patch.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6libreofficeOut of support scope
Red Hat Enterprise Linux 6raptorOut of support scope
Red Hat Enterprise Linux 7libreofficeOut of support scope
Red Hat Enterprise Linux 7raptor2Out of support scope
Red Hat Enterprise Linux 8libreofficeNot affected
Red Hat Enterprise Linux 8raptor2FixedRHSA-2021:184218.05.2021

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-122
https://bugzilla.redhat.com/show_bug.cgi?id=1896120raptor: heap-based buffer overflows due to an error in calculating the maximum nspace declarations for the XML writer

EPSS

Процентиль: 86%
0.02858
Низкий

7.1 High

CVSS3

Связанные уязвимости

CVSS3: 7.1
ubuntu
больше 4 лет назад

raptor_xml_writer_start_element_common in raptor_xml_writer.c in Raptor RDF Syntax Library 2.0.15 miscalculates the maximum nspace declarations for the XML writer, leading to heap-based buffer overflows (sometimes seen in raptor_qname_format_as_xml).

CVSS3: 7.1
nvd
больше 4 лет назад

raptor_xml_writer_start_element_common in raptor_xml_writer.c in Raptor RDF Syntax Library 2.0.15 miscalculates the maximum nspace declarations for the XML writer, leading to heap-based buffer overflows (sometimes seen in raptor_qname_format_as_xml).

CVSS3: 7.1
debian
больше 4 лет назад

raptor_xml_writer_start_element_common in raptor_xml_writer.c in Rapto ...

suse-cvrf
больше 4 лет назад

Security update for raptor

suse-cvrf
больше 4 лет назад

Security update for raptor

EPSS

Процентиль: 86%
0.02858
Низкий

7.1 High

CVSS3