VDB

CVE-2017-18926

CVE-2017-18926 PUBLISHED

raptor_xml_writer_start_element_common in raptor_xml_writer.c in Raptor RDF Syntax Library 2.0.15 miscalculates the maximum nspace declarations for the XML writer, leading to heap-based buffer overflows (sometimes seen in raptor_qname_format_as_xml).

EPSS 1.77% · 83.0th percentile

Risk Scores

EPSS Score
1.77%
83.0th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSraptor22.0.14-1, 0
Ubuntu:Pro:16.04:LTSraptor1.4.21-11, 0
Ubuntu:18.04:LTSraptor22.0.14-1build1, 0
Ubuntu:22.04:LTSraptor20
Ubuntu:20.04:LTSraptor22.0.15-0ubuntu1, 0

Timeline

  • Nov 6, 2020 CVE Published
  • Apr 14, 2021 EPSS Score
  • Jun 22, 2021 EPSS Score
  • Oct 25, 2021 EPSS Score
  • Dec 27, 2021 EPSS Score
  • Feb 4, 2022 EPSS Score
  • Feb 27, 2022 EPSS Score
  • Jul 2, 2022 EPSS Score
  • Sep 4, 2022 EPSS Score
  • Nov 5, 2022 EPSS Score
  • Jan 7, 2023 EPSS Score
  • Mar 10, 2023 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›