[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

249461

 
 

909

 
 

195508

 
 

282

Paid content will be excluded from the download.


Download | Alert*


CVE-2014-8118
Integer overflow in RPM 4.12 and earlier allows remote attackers to execute arbitrary code via a crafted CPIO header in the payload section of an RPM file, which triggers a stack-based buffer overflow.

CVE-2013-6435
Race condition in RPM 4.11.1 and earlier allows remote attackers to execute arbitrary code via a crafted RPM file whose installation extracts the contents to temporary files before validating the signature, as demonstrated by installing a file in the /etc/cron.d directory.

*OVAL
oval:org.secpod.oval:def:1500868
CPE    111
cpe:/a:rpm:rpm:4.10.2
cpe:/a:rpm:rpm:4.10.1
cpe:/a:rpm:rpm:4.0.2
cpe:/a:rpm:rpm:4.0.3
...

© SecPod Technologies