Alerts This Week
Warning Icon 1 975
Alerts This Week
Warning Icon 1 975

Ubuntu 20.10 Raptor2: USN-4630-1 High Threat Denial of Service

ubuntu
Calendar Grey November 11, 2020
Dist Ubuntu Esm H88
Raptor2 flaw impacts Ubuntu distributions; update released to avert software failure and potential code exploitation.
raptor2 could be made to crash or run programs as your login if it opened a specially crafted file.

Summary

raptor2 could be made to crash or run programs as your login if it opened a

specially crafted file.

Software Description:

- raptor2: RDF syntax library

Details:

Hanno Böck discovered that Raptor incorrectly handled certain memory

operations. If a user were tricked into opening a specially crafted

document in an application linked against Raptor, an attacker could

cause the application to crash, resulting in a denial of service, or

possibly execute arbitrary code.

Update Instructions

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 20.10:
  libraptor2-0                    2.0.15-0ubuntu1.20.10.1

Ubuntu 20.04 LTS:
  libraptor2-0                    2.0.15-0ubuntu1.20.04.1

Ubuntu 18.04 LTS:
  libraptor2-0                    2.0.14-1ubuntu0.18.04.1

Ubuntu 16.04 LTS:
  libraptor2-0                    2.0.14-1ubuntu0.16.04.1

After a standard system update you need to restart any applications which
use Raptor, such as LibreOffice, to make all the necessary changes.

References

https://ubuntu.com/security/notices/USN-4630-1

CVE-2017-18926

November 11, 2020

Package Information

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here