CVE-2024-57822: Medium severity redland libraptor vulnerability
Published Mar 28, 2024
·Updated
In Raptor RDF Syntax Library through 2.0.16, there is a heap-based buffer over-read when parsing triples with the nquads parser in raptorntriplesparseterminternal().
Affected Software
3 affected componentsFixes available
Raptor RDF Syntax Library<=2.0.16
Librdf Raptor Rdf Syntax Library<=2.0.16
debian/raptor2<=2.0.14-1.2
2.0.14-1.2+deb11u12.0.15-4+deb12u12.0.16-6
Event History
Mar 28, 2024
Data Sourced
via Debian·03:27 PM
SeverityAffected Software
Jan 10, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·01:15 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·01:15 PM
Affected Software
Mar 3, 2025
Data Sourced
via Ubuntu·06:26 PM
RemedyDescriptionSeverityAffected Software
Nov 3, 2025
Data Sourced
via Debian·05:43 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2024-57822?
CVE-2024-57822 is classified as a medium severity vulnerability due to its potential exploitation through a heap-based buffer over-read.
2
How do I fix CVE-2024-57822?
To fix CVE-2024-57822, upgrade the Raptor RDF Syntax Library to version 2.0.16 or later.
3
What type of vulnerability is CVE-2024-57822?
CVE-2024-57822 is a heap-based buffer over-read vulnerability that occurs when parsing triples with the nquads parser.
4
Which versions of Raptor RDF Syntax Library are affected by CVE-2024-57822?
CVE-2024-57822 affects Raptor RDF Syntax Library versions prior to 2.0.16.
5
What are the potential impacts of CVE-2024-57822?
The potential impacts of CVE-2024-57822 include application crashes and unintended disclosures of sensitive memory contents.