Описание
Rpm: command execution via macro expansion in rpmuncompress -x for crafted .gem filenames
Обновления
| Продукт | Статья | Обновление |
|---|---|---|
| azl3 rpm 4.18.2-1 on Azure Linux 3.0 | ||
| azl3 rpm 4.18.2-2 on Azure Linux 3.0 |
Показывать по
EPSS
7 High
CVSS3
Связанные уязвимости
(A flaw was found in rpm. A local attacker could supply a specially cra ...)
A flaw was found in rpm. A local attacker could supply a specially crafted `.gem` filename containing RPM macro syntax. When a user or automated workflow invokes `rpmuncompress -x` on this file, the macro expansion occurs during command construction. This allows the attacker to execute arbitrary commands with the privileges of the invoking account, leading to a compromise of confidentiality, integrity, and availability.
A flaw was found in rpm. A local attacker could supply a specially crafted `.gem` filename containing RPM macro syntax. When a user or automated workflow invokes `rpmuncompress -x` on this file, the macro expansion occurs during command construction. This allows the attacker to execute arbitrary commands with the privileges of the invoking account, leading to a compromise of confidentiality, integrity, and availability.
A flaw was found in rpm. A local attacker could supply a specially cra ...
A flaw was found in rpm. A local attacker could supply a specially crafted `.gem` filename containing RPM macro syntax. When a user or automated workflow invokes `rpmuncompress -x` on this file, the macro expansion occurs during command construction. This allows the attacker to execute arbitrary commands with the privileges of the invoking account, leading to a compromise of confidentiality, integrity, and availability.
EPSS
7 High
CVSS3