FreshPorts - VuXML

This page displays vulnerability information about FreeBSD Ports.

The last vuln.xml file processed by FreshPorts is:

nothing found there

List all Vulnerabilities, by package

List all Vulnerabilities, by date

These are the vulnerabilities relating to the commit you have selected:

VuXML IDDescription
07c7ae7a-224b-11eb-aa6e-e0d55e2a8bf9raptor2 -- buffer overflow

CVE MITRE reports:

raptor_xml_writer_start_element_common in raptor_xml_writer.c in Raptor RDF Syntax Library 2.0.15 miscalculates the maximum nspace declarations for the XML writer, leading to heap-based buffer overflows (sometimes seen in raptor_qname_format_as_xml).


Discovery 2017-04-16
Entry 2020-11-09
raptor2
lt 2.0.15_16

https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-18926
https://github.com/LibreOffice/core/blob/master/external/redland/raptor/0001-Calcualte-max-nspace-declarations-correctly-for-XML-.patch.1
CVE-2017-18926
9c03845c-7398-11eb-bc0e-2cf05d620eccraptor2 -- malformed input file can lead to a segfault

Redland Issue Tracker reports:

due to an out of bounds array access in raptor_xml_writer_start_element_common.


Discovery 2020-11-24
Entry 2021-02-20
raptor2
lt 2.0.15_17

https://bugs.librdf.org/mantis/view.php?id=650