CVE Vulnerabilities

CVE-2024-57823

Integer Underflow (Wrap or Wraparound)

Published: Jan 10, 2025 | Modified: Nov 03, 2025
CVSS 3.x
5.5
MEDIUM
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
7.3 IMPORTANT
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:H
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

In Raptor RDF Syntax Library through 2.0.16, there is an integer underflow when normalizing a URI with the turtle parser in raptor_uri_normalize_path().

Weakness

The product subtracts one value from another, such that the result is less than the minimum allowable integer value, which produces a value that is not equal to the correct result.

Affected Software

NameVendorStart VersionEnd Version
Raptor_rdf_syntax_libraryLibrdf*2.0.16 (including)
Red Hat Enterprise Linux 7 Extended Lifecycle SupportRedHatraptor2-0:2.0.9-5.el7_9*
Red Hat Enterprise Linux 8RedHatraptor2-0:2.0.15-17.el8_10*
Red Hat Enterprise Linux 8.2 Advanced Update SupportRedHatraptor2-0:2.0.15-17.el8_2*
Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update SupportRedHatraptor2-0:2.0.15-17.el8_4*
Red Hat Enterprise Linux 8.4 Telecommunications Update ServiceRedHatraptor2-0:2.0.15-17.el8_4*
Red Hat Enterprise Linux 8.4 Update Services for SAP SolutionsRedHatraptor2-0:2.0.15-17.el8_4*
Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update SupportRedHatraptor2-0:2.0.15-17.el8_6*
Red Hat Enterprise Linux 8.6 Telecommunications Update ServiceRedHatraptor2-0:2.0.15-17.el8_6*
Red Hat Enterprise Linux 8.6 Update Services for SAP SolutionsRedHatraptor2-0:2.0.15-17.el8_6*
Red Hat Enterprise Linux 8.8 Extended Update SupportRedHatraptor2-0:2.0.15-17.el8_8*
Red Hat Enterprise Linux 9RedHatraptor2-0:2.0.15-32.el9_5*
Red Hat Enterprise Linux 9.0 Update Services for SAP SolutionsRedHatraptor2-0:2.0.15-31.el9_0*
Red Hat Enterprise Linux 9.2 Extended Update SupportRedHatraptor2-0:2.0.15-31.el9_2*
Red Hat Enterprise Linux 9.4 Extended Update SupportRedHatraptor2-0:2.0.15-31.el9_4*
Raptor2Ubuntudevel*
Raptor2Ubuntuesm-infra/bionic*
Raptor2Ubuntuesm-infra/focal*
Raptor2Ubuntuesm-infra/xenial*
Raptor2Ubuntufocal*
Raptor2Ubuntujammy*
Raptor2Ubuntunoble*
Raptor2Ubuntuoracular*
Raptor2Ubuntuplucky*
Raptor2Ubuntuquesting*

References