Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2012-0061

Опубликовано: 03 апр. 2012
Источник: redhat
CVSS2: 7.6

Описание

The headerLoad function in lib/header.c in RPM before 4.9.1.3 does not properly validate region tags, which allows user-assisted remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a large region size in a package header.

Дополнительная информация

Статус:

Important
Дефект:
CWE-190
https://bugzilla.redhat.com/show_bug.cgi?id=798585rpm: improper validation of header contents total size in headerLoad()

7.6 High

CVSS2

Связанные уязвимости

ubuntu
около 14 лет назад

The headerLoad function in lib/header.c in RPM before 4.9.1.3 does not properly validate region tags, which allows user-assisted remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a large region size in a package header.

nvd
около 14 лет назад

The headerLoad function in lib/header.c in RPM before 4.9.1.3 does not properly validate region tags, which allows user-assisted remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a large region size in a package header.

debian
около 14 лет назад

The headerLoad function in lib/header.c in RPM before 4.9.1.3 does not ...

github
около 4 лет назад

The headerLoad function in lib/header.c in RPM before 4.9.1.3 does not properly validate region tags, which allows user-assisted remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a large region size in a package header.

oracle-oval
больше 14 лет назад

ELSA-2012-0451: rpm security update (IMPORTANT)

7.6 High

CVSS2