Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2020:3352-1

Опубликовано: 17 нояб. 2020
Источник: suse-cvrf

Описание

Security update for raptor

This update for raptor fixes the following issues:

  • Fixed a heap overflow vulnerability (bsc#1178593, CVE-2017-18926).

Список пакетов

SUSE Linux Enterprise Module for Desktop Applications 15 SP2
libraptor-devel-2.0.15-9.3.1
libraptor2-0-2.0.15-9.3.1
raptor-2.0.15-9.3.1

Описание

raptor_xml_writer_start_element_common in raptor_xml_writer.c in Raptor RDF Syntax Library 2.0.15 miscalculates the maximum nspace declarations for the XML writer, leading to heap-based buffer overflows (sometimes seen in raptor_qname_format_as_xml).


Затронутые продукты
SUSE Linux Enterprise Module for Desktop Applications 15 SP2:libraptor-devel-2.0.15-9.3.1
SUSE Linux Enterprise Module for Desktop Applications 15 SP2:libraptor2-0-2.0.15-9.3.1
SUSE Linux Enterprise Module for Desktop Applications 15 SP2:raptor-2.0.15-9.3.1

Ссылки
Уязвимость SUSE-SU-2020:3352-1