Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2013-6435

Опубликовано: 16 дек. 2014
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 7.6

Описание

Race condition in RPM 4.11.1 and earlier allows remote attackers to execute arbitrary code via a crafted RPM file whose installation extracts the contents to temporary files before validating the signature, as demonstrated by installing a file in the /etc/cron.d directory.

РелизСтатусПримечание
devel

not-affected

4.11.3-1.1
esm-infra-legacy/trusty

not-affected

4.11.1-3ubuntu0.1
lucid

ignored

end of life
precise

released

4.9.1.1-1ubuntu0.3
trusty

released

4.11.1-3ubuntu0.1
trusty/esm

not-affected

4.11.1-3ubuntu0.1
upstream

released

4.11.3-1.1
utopic

released

4.11.2-3ubuntu0.1

Показывать по

EPSS

Процентиль: 91%
0.06749
Низкий

7.6 High

CVSS2

Связанные уязвимости

redhat
больше 10 лет назад

Race condition in RPM 4.11.1 and earlier allows remote attackers to execute arbitrary code via a crafted RPM file whose installation extracts the contents to temporary files before validating the signature, as demonstrated by installing a file in the /etc/cron.d directory.

nvd
больше 10 лет назад

Race condition in RPM 4.11.1 and earlier allows remote attackers to execute arbitrary code via a crafted RPM file whose installation extracts the contents to temporary files before validating the signature, as demonstrated by installing a file in the /etc/cron.d directory.

debian
больше 10 лет назад

Race condition in RPM 4.11.1 and earlier allows remote attackers to ex ...

github
больше 3 лет назад

Race condition in RPM 4.11.1 and earlier allows remote attackers to execute arbitrary code via a crafted RPM file whose installation extracts the contents to temporary files before validating the signature, as demonstrated by installing a file in the /etc/cron.d directory.

oracle-oval
больше 10 лет назад

ELSA-2014-1974: rpm security update (IMPORTANT)

EPSS

Процентиль: 91%
0.06749
Низкий

7.6 High

CVSS2