First published: Thu Mar 28 2024(Updated: )
In Raptor RDF Syntax Library through 2.0.16, there is a heap-based buffer over-read when parsing triples with the nquads parser in raptor_ntriples_parse_term_internal().
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
debian/raptor2 | <=2.0.14-1.2<=2.0.15-4<=2.0.16-5 | |
Redland Libraptor | <=2.0.16 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-57822 is classified as a medium severity vulnerability due to its potential exploitation through a heap-based buffer over-read.
To fix CVE-2024-57822, upgrade the Raptor RDF Syntax Library to version 2.0.16 or later.
CVE-2024-57822 is a heap-based buffer over-read vulnerability that occurs when parsing triples with the nquads parser.
CVE-2024-57822 affects Raptor RDF Syntax Library versions prior to 2.0.16.
The potential impacts of CVE-2024-57822 include application crashes and unintended disclosures of sensitive memory contents.