Beveiligingsadvies

CVE-2013-6435

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2014-12-16 18:00:00
Laatst bijgewerkt 2024-08-06 17:39:01
Toegewezen door redhat
CVSS-score geen score
Status PUBLISHED

Beschrijving

Race condition in RPM 4.11.1 and earlier allows remote attackers to execute arbitrary code via a crafted RPM file whose installation extracts the contents to temporary files before validating the signature, as demonstrated by installing a file in the /etc/cron.d directory.