Gabriel Corona discovered that RDFLib did not properly load modules on the command-line. An attacker could possibly use this issue to cause RDFLib to execute arbitrary code. (CVE-2019-7653)
{
"availability": "No subscription required",
"binaries": [
{
"binary_version": "4.1.2-3+deb8u1build0.16.04.1",
"binary_name": "python-rdflib"
},
{
"binary_version": "4.1.2-3+deb8u1build0.16.04.1",
"binary_name": "python-rdflib-tools"
},
{
"binary_version": "4.1.2-3+deb8u1build0.16.04.1",
"binary_name": "python3-rdflib"
}
]
}