Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Race condition in RPM 4.11.1 and earlier allows remote attackers to execute arbitrary code via a crafted RPM file whose installation extracts the contents to temporary files before validating the signature, as demonstrated by installing a file in the /etc/cron.d directory.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
rpm 注入漏洞
Vulnerability Description
rpm是一个强大的命令行驱动的软件包管理工具,用来安装、卸载、校验、查询和更新 Linux 系统上的软件包。 rpm 4.11.1版本及之前版本中存在注入漏洞。远程攻击者利用该漏洞可以执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A