CVE-2024-57822Out-of-bounds Read in Raptor RDF Syntax Library

CWE-125Out-of-bounds Read9 documents6 sources
Severity
5.5MEDIUMNVD
OSV6.5
EPSS
0.0%
top 91.97%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJan 10
Latest updateNov 10

Description

In Raptor RDF Syntax Library through 2.0.16, there is a heap-based buffer over-read when parsing triples with the nquads parser in raptor_ntriples_parse_term_internal().

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:HExploitability: 1.8 | Impact: 3.6

Affected Packages2 packages

debiandebian/raptor2< raptor2 2.0.15-4+deb12u1 (bookworm)

🔴Vulnerability Details

4
OSV
raptor2 vulnerabilities2025-11-10
OSV
raptor2 vulnerabilities2025-03-03
GHSA
GHSA-4g53-844p-p879: In Raptor RDF Syntax Library through 22025-01-10
OSV
CVE-2024-57822: In Raptor RDF Syntax Library through 22025-01-10

📋Vendor Advisories

4
Ubuntu
Raptor vulnerabilities2025-11-10
Ubuntu
Raptor vulnerabilities2025-03-03
Red Hat
raptor: heap-based buffer over-read vulnerability2025-01-10
Debian
CVE-2024-57822: raptor2 - In Raptor RDF Syntax Library through 2.0.16, there is a heap-based buffer over-r...2024
CVE-2024-57822 — Out-of-bounds Read | cvebase