CVE-2017-18926: Debian Linux

High severity, CVSS 7.1. EPSS: 3.1% chance of exploitation in the next 30 days.

raptor_xml_writer_start_element_common in raptor_xml_writer.c in Raptor RDF Syntax Library 2.0.15 miscalculates the maximum nspace declarations for the XML writer, leading to heap-based buffer overflows (sometimes seen in raptor_qname_format_as_xml).

Affected products

  • Debian Debian Linux: version 9.0 only; version 10.0 only
  • Fedoraproject Fedora: version 31 only; version 32 only; version 33 only
  • Librdf Raptor Rdf Syntax Library: version 2.0.15 only

Published 2020-11-06. Last modified 2026-06-17.