Package "libraptor2-dev"
Name: |
libraptor2-dev
|
Description: |
Raptor 2 RDF syntax library development libraries and headers
|
Latest version: |
2.0.16-3ubuntu0.1 |
Release: |
noble (24.04) |
Level: |
updates |
Repository: |
main |
Head package: |
raptor2 |
Homepage: |
https://librdf.org/raptor/ |
Links
Download "libraptor2-dev"
Other versions of "libraptor2-dev" in Noble
Changelog
raptor2 (2.0.16-3ubuntu0.1) noble-security; urgency=medium
* SECURITY UPDATE: heap overread when parsing triples
- debian/patches/CVE-2024-57822.patch: only allow looking at the last
character of a bnode ID only if bnode length >0 in
src/raptor_ntriples.c.
- debian/patches/CVE-2024-5782x-tests.patch: added test in
configure.ac, tests/Makefile.am, tests/bugs/Makefile.am,
tests/bugs/issue70b.c.
- CVE-2024-57822
* SECURITY UPDATE: integer overflow when normalizing a URI
- debian/patches/CVE-2024-57823.patch: return empty buffer if path gets
to 0 length in src/raptor_rfc2396.c.
- debian/patches/CVE-2024-5782x-tests.patch: added test in
configure.ac, tests/Makefile.am, tests/bugs/Makefile.am,
tests/bugs/issue70a.c.
- CVE-2024-57823
-- Marc Deslauriers <email address hidden> Tue, 25 Feb 2025 08:35:30 -0500
|
CVE-2024-57822 |
In Raptor RDF Syntax Library through 2.0.16, there is a heap-based buffer over-read when parsing triples with the nquads parser in raptor_ntriples_pa |
CVE-2024-57823 |
In Raptor RDF Syntax Library through 2.0.16, there is an integer underflow when normalizing a URI with the turtle parser in raptor_uri_normalize_path |
|
About
-
Send Feedback to @ubuntu_updates