raptor2 could be made to crash or run programs as your login if it opened a
specially crafted file.
Software Description:
- raptor2: RDF syntax library
Details:
Hanno Böck discovered that Raptor incorrectly handled certain memory
operations. If a user were tricked into opening a specially crafted
document in an application linked against Raptor, an attacker could
cause the application to crash, resulting in a denial of service, or
possibly execute arbitrary code.
The problem can be corrected by updating your system to the following package versions: Ubuntu 20.10: libraptor2-0 2.0.15-0ubuntu1.20.10.1 Ubuntu 20.04 LTS: libraptor2-0 2.0.15-0ubuntu1.20.04.1 Ubuntu 18.04 LTS: libraptor2-0 2.0.14-1ubuntu0.18.04.1 Ubuntu 16.04 LTS: libraptor2-0 2.0.14-1ubuntu0.16.04.1 After a standard system update you need to restart any applications which use Raptor, such as LibreOffice, to make all the necessary changes.
https://ubuntu.com/security/notices/USN-4630-1
CVE-2017-18926
Get the latest Linux and open source security news straight to your inbox.