CVE Vulnerabilities

CVE-2014-8118

Published: Dec 16, 2014 | Modified: Feb 13, 2023
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
10 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
7.6 IMPORTANT
AV:N/AC:H/Au:N/C:C/I:C/A:C
RedHat/V3
Ubuntu
MEDIUM

Integer overflow in RPM 4.12 and earlier allows remote attackers to execute arbitrary code via a crafted CPIO header in the payload section of an RPM file, which triggers a stack-based buffer overflow.

Affected Software

Name Vendor Start Version End Version
Rpm Rpm * 4.12.0 (including)
Rpm Rpm 1.2 (including) 1.2 (including)
Rpm Rpm 1.3 (including) 1.3 (including)
Rpm Rpm 1.3.1 (including) 1.3.1 (including)
Rpm Rpm 1.4 (including) 1.4 (including)
Rpm Rpm 1.4.1 (including) 1.4.1 (including)
Rpm Rpm 1.4.2 (including) 1.4.2 (including)
Rpm Rpm 1.4.2/a (including) 1.4.2/a (including)
Rpm Rpm 1.4.3 (including) 1.4.3 (including)
Rpm Rpm 1.4.4 (including) 1.4.4 (including)
Rpm Rpm 1.4.5 (including) 1.4.5 (including)
Rpm Rpm 1.4.6 (including) 1.4.6 (including)
Rpm Rpm 1.4.7 (including) 1.4.7 (including)
Rpm Rpm 2.0 (including) 2.0 (including)
Rpm Rpm 2.0.1 (including) 2.0.1 (including)
Rpm Rpm 2.0.2 (including) 2.0.2 (including)
Rpm Rpm 2.0.3 (including) 2.0.3 (including)
Rpm Rpm 2.0.4 (including) 2.0.4 (including)
Rpm Rpm 2.0.5 (including) 2.0.5 (including)
Rpm Rpm 2.0.6 (including) 2.0.6 (including)
Rpm Rpm 2.0.7 (including) 2.0.7 (including)
Rpm Rpm 2.0.8 (including) 2.0.8 (including)
Rpm Rpm 2.0.9 (including) 2.0.9 (including)
Rpm Rpm 2.0.10 (including) 2.0.10 (including)
Rpm Rpm 2.0.11 (including) 2.0.11 (including)
Rpm Rpm 2.1 (including) 2.1 (including)
Rpm Rpm 2.1.1 (including) 2.1.1 (including)
Rpm Rpm 2.1.2 (including) 2.1.2 (including)
Rpm Rpm 2.2 (including) 2.2 (including)
Rpm Rpm 2.2.1 (including) 2.2.1 (including)
Rpm Rpm 2.2.2 (including) 2.2.2 (including)
Rpm Rpm 2.2.3 (including) 2.2.3 (including)
Rpm Rpm 2.2.3.10 (including) 2.2.3.10 (including)
Rpm Rpm 2.2.3.11 (including) 2.2.3.11 (including)
Rpm Rpm 2.2.4 (including) 2.2.4 (including)
Rpm Rpm 2.2.5 (including) 2.2.5 (including)
Rpm Rpm 2.2.6 (including) 2.2.6 (including)
Rpm Rpm 2.2.7 (including) 2.2.7 (including)
Rpm Rpm 2.2.8 (including) 2.2.8 (including)
Rpm Rpm 2.2.9 (including) 2.2.9 (including)
Rpm Rpm 2.2.10 (including) 2.2.10 (including)
Rpm Rpm 2.2.11 (including) 2.2.11 (including)
Rpm Rpm 2.3 (including) 2.3 (including)
Rpm Rpm 2.3.1 (including) 2.3.1 (including)
Rpm Rpm 2.3.2 (including) 2.3.2 (including)
Rpm Rpm 2.3.3 (including) 2.3.3 (including)
Rpm Rpm 2.3.4 (including) 2.3.4 (including)
Rpm Rpm 2.3.5 (including) 2.3.5 (including)
Rpm Rpm 2.3.6 (including) 2.3.6 (including)
Rpm Rpm 2.3.7 (including) 2.3.7 (including)
Rpm Rpm 2.3.8 (including) 2.3.8 (including)
Rpm Rpm 2.3.9 (including) 2.3.9 (including)
Rpm Rpm 2.4.1 (including) 2.4.1 (including)
Rpm Rpm 2.4.2 (including) 2.4.2 (including)
Rpm Rpm 2.4.3 (including) 2.4.3 (including)
Rpm Rpm 2.4.4 (including) 2.4.4 (including)
Rpm Rpm 2.4.5 (including) 2.4.5 (including)
Rpm Rpm 2.4.6 (including) 2.4.6 (including)
Rpm Rpm 2.4.8 (including) 2.4.8 (including)
Rpm Rpm 2.4.9 (including) 2.4.9 (including)
Rpm Rpm 2.4.11 (including) 2.4.11 (including)
Rpm Rpm 2.4.12 (including) 2.4.12 (including)
Rpm Rpm 2.5 (including) 2.5 (including)
Rpm Rpm 2.5.1 (including) 2.5.1 (including)
Rpm Rpm 2.5.2 (including) 2.5.2 (including)
Rpm Rpm 2.5.3 (including) 2.5.3 (including)
Rpm Rpm 2.5.4 (including) 2.5.4 (including)
Rpm Rpm 2.5.5 (including) 2.5.5 (including)
Rpm Rpm 2.5.6 (including) 2.5.6 (including)
Rpm Rpm 2.6.7 (including) 2.6.7 (including)
Rpm Rpm 3.0 (including) 3.0 (including)
Rpm Rpm 3.0.1 (including) 3.0.1 (including)
Rpm Rpm 3.0.2 (including) 3.0.2 (including)
Rpm Rpm 3.0.3 (including) 3.0.3 (including)
Rpm Rpm 3.0.4 (including) 3.0.4 (including)
Rpm Rpm 3.0.5 (including) 3.0.5 (including)
Rpm Rpm 3.0.6 (including) 3.0.6 (including)
Rpm Rpm 4.0. (including) 4.0. (including)
Rpm Rpm 4.0.1 (including) 4.0.1 (including)
Rpm Rpm 4.0.2 (including) 4.0.2 (including)
Rpm Rpm 4.0.3 (including) 4.0.3 (including)
Rpm Rpm 4.0.4 (including) 4.0.4 (including)
Rpm Rpm 4.1 (including) 4.1 (including)
Rpm Rpm 4.3.3 (including) 4.3.3 (including)
Rpm Rpm 4.4.2.1 (including) 4.4.2.1 (including)
Rpm Rpm 4.4.2.2 (including) 4.4.2.2 (including)
Rpm Rpm 4.4.2.3 (including) 4.4.2.3 (including)
Rpm Rpm 4.5.90 (including) 4.5.90 (including)
Rpm Rpm 4.6.0 (including) 4.6.0 (including)
Rpm Rpm 4.6.0-rc1 (including) 4.6.0-rc1 (including)
Rpm Rpm 4.6.0-rc2 (including) 4.6.0-rc2 (including)
Rpm Rpm 4.6.0-rc3 (including) 4.6.0-rc3 (including)
Rpm Rpm 4.6.0-rc4 (including) 4.6.0-rc4 (including)
Rpm Rpm 4.6.1 (including) 4.6.1 (including)
Rpm Rpm 4.7.0 (including) 4.7.0 (including)
Rpm Rpm 4.7.1 (including) 4.7.1 (including)
Rpm Rpm 4.7.2 (including) 4.7.2 (including)
Rpm Rpm 4.8.0 (including) 4.8.0 (including)
Rpm Rpm 4.8.1 (including) 4.8.1 (including)
Rpm Rpm 4.9.0 (including) 4.9.0 (including)
Rpm Rpm 4.9.0-alpha (including) 4.9.0-alpha (including)
Rpm Rpm 4.9.0-beta1 (including) 4.9.0-beta1 (including)
Rpm Rpm 4.9.0-rc1 (including) 4.9.0-rc1 (including)
Rpm Rpm 4.9.1 (including) 4.9.1 (including)
Rpm Rpm 4.9.1.1 (including) 4.9.1.1 (including)
Rpm Rpm 4.9.1.2 (including) 4.9.1.2 (including)
Rpm Rpm 4.10.0 (including) 4.10.0 (including)
Rpm Rpm 4.10.1 (including) 4.10.1 (including)
Rpm Rpm 4.10.2 (including) 4.10.2 (including)
Red Hat Enterprise Linux 7 RedHat rpm-0:4.11.1-18.el7_0 *
Rpm Ubuntu lucid *
Rpm Ubuntu precise *
Rpm Ubuntu trusty *
Rpm Ubuntu upstream *
Rpm Ubuntu utopic *

References