In Raptor RDF Syntax Library through 2.0.16, there is a heap-based buffer over-read when parsing triples with the nquads parser in raptor_ntriples_parse_term_internal().
CVSS Details
- CVSS 3.1 Base Score: 4
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade raptor2 | May 15, 2025 | Jan 10, 2025 |
| Redhat_linux | — | No solution exists | Jul 9, 2025 | Jan 10, 2025 |
| Ubuntu | — | Upgrade raptor2-utilsUpgrade raptor2-utils (Ubuntu Pro)Upgrade libraptor2-0Upgrade libraptor2-0 (Ubuntu Pro) | Mar 4, 2025 | Jan 10, 2025 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub