Описание
Security update for raptor
This update for raptor fixes the following issues:
- Fixed a heap overflow vulnerability (bsc#1178593, CVE-2017-18926).
Список пакетов
SUSE Linux Enterprise Module for Desktop Applications 15 SP2
libraptor-devel-2.0.15-9.3.1
libraptor2-0-2.0.15-9.3.1
raptor-2.0.15-9.3.1
Ссылки
- Link for SUSE-SU-2020:3352-1
- E-Mail link for SUSE-SU-2020:3352-1
- SUSE Security Ratings
- SUSE Bug 1178593
- SUSE CVE CVE-2017-18926 page
Описание
raptor_xml_writer_start_element_common in raptor_xml_writer.c in Raptor RDF Syntax Library 2.0.15 miscalculates the maximum nspace declarations for the XML writer, leading to heap-based buffer overflows (sometimes seen in raptor_qname_format_as_xml).
Затронутые продукты
SUSE Linux Enterprise Module for Desktop Applications 15 SP2:libraptor-devel-2.0.15-9.3.1
SUSE Linux Enterprise Module for Desktop Applications 15 SP2:libraptor2-0-2.0.15-9.3.1
SUSE Linux Enterprise Module for Desktop Applications 15 SP2:raptor-2.0.15-9.3.1
Ссылки
- CVE-2017-18926
- SUSE Bug 1178593
- SUSE Bug 1178784
- SUSE Bug 1178903
- SUSE Bug 1183914