Redhat

Redhat Package Manager

2 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 1.4%
  • Published 31.12.2002 05:00:00
  • Last modified 03.04.2025 01:03:51

The default --checksig setting in RPM Package Manager 4.0.4 checks that a package's signature is valid without listing who signed it, which can allow remote attackers to make it appear that a malicious package comes from a trusted source.

Exploit
  • EPSS 0.07%
  • Published 25.10.2001 04:00:00
  • Last modified 03.04.2025 01:03:51

RPM Package Manager 4.0.x through 4.0.2.x allows an attacker to execute arbitrary code via corrupted data in the RPM file when the file is queried.