Описание
Security update for raptor
This update for raptor fixes the following issues:
- Fixed a heap overflow vulnerability (bsc#1178593, CVE-2017-18926).
This update was imported from the SUSE:SLE-15:Update update project.
Список пакетов
openSUSE Leap 15.2
libraptor-devel-2.0.15-lp152.4.3.1
libraptor2-0-2.0.15-lp152.4.3.1
libraptor2-0-32bit-2.0.15-lp152.4.3.1
raptor-2.0.15-lp152.4.3.1
Ссылки
- E-Mail link for openSUSE-SU-2020:1949-1
- SUSE Security Ratings
- SUSE Bug 1178593
- SUSE CVE CVE-2017-18926 page
Описание
raptor_xml_writer_start_element_common in raptor_xml_writer.c in Raptor RDF Syntax Library 2.0.15 miscalculates the maximum nspace declarations for the XML writer, leading to heap-based buffer overflows (sometimes seen in raptor_qname_format_as_xml).
Затронутые продукты
openSUSE Leap 15.2:libraptor-devel-2.0.15-lp152.4.3.1
openSUSE Leap 15.2:libraptor2-0-2.0.15-lp152.4.3.1
openSUSE Leap 15.2:libraptor2-0-32bit-2.0.15-lp152.4.3.1
openSUSE Leap 15.2:raptor-2.0.15-lp152.4.3.1
Ссылки
- CVE-2017-18926
- SUSE Bug 1178593
- SUSE Bug 1178784
- SUSE Bug 1178903
- SUSE Bug 1183914