In Raptor RDF Syntax Library through 2.0.16, there is a heap-based buffer over-read when parsing triples with the nquads parser in raptor_ntriples_parse_term_internal().
CVSS Details
- CVSS 3.1 Base Score: 4
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | debian-upgrade-raptor2 | May 15, 2025 | Jan 10, 2025 | |
| Redhat_linux | — | no-fix-redhat-rpm-package | Jul 9, 2025 | Jan 10, 2025 |
| Ubuntu | ubuntu-pro-upgrade-libraptor2-0ubuntu-pro-upgrade-raptor2-utilsubuntu-upgrade-libraptor2-0ubuntu-upgrade-raptor2-utils | Mar 4, 2025 | Jan 10, 2025 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub