Gabriel Corona discovered that RDFLib did not properly load modules on the command-line. An attacker could possibly use this issue to cause RDFLib to execute arbitrary code. (CVE-2019-7653)
{
"binaries": [
{
"binary_name": "python-rdflib",
"binary_version": "4.1.2-3+deb8u1build0.16.04.1"
},
{
"binary_name": "python-rdflib-tools",
"binary_version": "4.1.2-3+deb8u1build0.16.04.1"
},
{
"binary_name": "python3-rdflib",
"binary_version": "4.1.2-3+deb8u1build0.16.04.1"
}
],
"availability": "No subscription required"
}