Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2014-8118

Опубликовано: 16 дек. 2014
Источник: ubuntu
Приоритет: medium
EPSS Средний
CVSS2: 10

Описание

Integer overflow in RPM 4.12 and earlier allows remote attackers to execute arbitrary code via a crafted CPIO header in the payload section of an RPM file, which triggers a stack-based buffer overflow.

РелизСтатусПримечание
devel

not-affected

4.11.3-1.1
esm-infra-legacy/trusty

released

4.11.1-3ubuntu0.1
lucid

ignored

end of life
precise

released

4.9.1.1-1ubuntu0.3
trusty

released

4.11.1-3ubuntu0.1
trusty/esm

released

4.11.1-3ubuntu0.1
upstream

released

4.11.3-1.1
utopic

released

4.11.2-3ubuntu0.1

Показывать по

EPSS

Процентиль: 93%
0.11803
Средний

10 Critical

CVSS2

Связанные уязвимости

redhat
больше 10 лет назад

Integer overflow in RPM 4.12 and earlier allows remote attackers to execute arbitrary code via a crafted CPIO header in the payload section of an RPM file, which triggers a stack-based buffer overflow.

nvd
больше 10 лет назад

Integer overflow in RPM 4.12 and earlier allows remote attackers to execute arbitrary code via a crafted CPIO header in the payload section of an RPM file, which triggers a stack-based buffer overflow.

debian
больше 10 лет назад

Integer overflow in RPM 4.12 and earlier allows remote attackers to ex ...

github
больше 3 лет назад

Integer overflow in RPM 4.12 and earlier allows remote attackers to execute arbitrary code via a crafted CPIO header in the payload section of an RPM file, which triggers a stack-based buffer overflow.

oracle-oval
больше 10 лет назад

ELSA-2014-1976: rpm security update (IMPORTANT)

EPSS

Процентиль: 93%
0.11803
Средний

10 Critical

CVSS2