{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/cpes/cpe2.3aheyeweijfinalcms/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":["cpe:2.3:a:heyewei:jfinalcms:*:*:*:*:*:*:*:*"],"_cs_cves":[{"cvss":6.3,"id":"CVE-2024-8782"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["RPM"],"_cs_severities":["low"],"_cs_tags":["vulnerability","linux","code-execution"],"_cs_type":"advisory","_cs_vendors":["RPM Software Management"],"content_html":"\u003cp\u003eThe BSI has reported a vulnerability in the RPM (RPM Package Manager) utility that allows a local attacker to execute arbitrary code. The flaw, identified as CVE-2024-8782, is triggered when an attacker influences the package installation or query process, leading to the execution of attacker-controlled code under the context of the user running the RPM command. This vulnerability poses a risk to Linux systems where users with local access, or automated scripts, perform package operations on untrusted or manipulated package files. Defenders should prioritize updating RPM packages to the latest vendor-supplied versions to mitigate this local escalation path.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eSuccessful exploitation allows a local attacker to gain the execution privileges of the current user, potentially leading to unauthorized system changes, data exfiltration, or further privilege escalation if the RPM command is executed by privileged accounts or as root.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eIdentify all Linux systems utilizing RPM for package management.\u003c/li\u003e\n\u003cli\u003eApply the latest security patches for the RPM utility provided by the respective Linux distribution vendor to resolve CVE-2024-8782.\u003c/li\u003e\n\u003cli\u003eAudit scripts and CI/CD pipelines that automate RPM package installations for potential exposure to untrusted input.\u003c/li\u003e\n\u003c/ul\u003e\n","date_modified":"2026-08-25T09:59:33Z","date_published":"2026-08-25T09:59:33Z","id":"https://feed.craftedsignal.io/briefs/2026-08-rpm-vulnerability/","summary":"A local vulnerability in the RPM package management utility allows an attacker to execute arbitrary code with the privileges of the user executing the command.","title":"Arbitrary Code Execution Vulnerability in RPM Package Manager","url":"https://feed.craftedsignal.io/briefs/2026-08-rpm-vulnerability/"}],"language":"en","title":"CraftedSignal Threat Feed - Cpe:2.3:a:heyewei:jfinalcms:*:*:*:*:*:*:*:*","version":"https://jsonfeed.org/version/1.1"}