Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Heap-based buffer overflow in the showQueryPackage function in librpm in RPM Package Manager 4.4.8, when the LANG environment variable is set to ru_RU.UTF-8, might allow user-assisted attackers to execute arbitrary code via crafted RPM packages.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
LibRPM查询报告任意代码执行漏洞
Vulnerability Description
Red Hat RPM Package Manager(RPM)是美国红帽(Red Hat)公司的一款命令行驱动的软件包管理器,它主要用于安装、卸载、验证、查询和升级计算机软件包。 RPM库在处理查询报告时存在漏洞,某些畸形RPM软件包可能导致函数库崩溃或导致执行恶意指令。如果用户受骗查询了特制的RPM软件包的话,就可能导致以用户的权限执行任意指令。
CVSS Information
N/A
Vulnerability Type
N/A