<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:webfeeds="http://webfeeds.org/rss/1.0"><channel><title>Cpe:2.3:a:heyewei:jfinalcms:*:*:*:*:*:*:*:* - CraftedSignal Threat Feed</title><link>https://feed.craftedsignal.io/cpes/cpe2.3aheyeweijfinalcms/</link><description>Trending threats, MITRE ATT&amp;CK coverage, and detection metadata. Fed continuously.</description><generator>Hugo</generator><language>en</language><managingEditor>hello@craftedsignal.io</managingEditor><webMaster>hello@craftedsignal.io</webMaster><lastBuildDate>Tue, 25 Aug 2026 09:59:33 +0000</lastBuildDate><atom:link href="https://feed.craftedsignal.io/cpes/cpe2.3aheyeweijfinalcms/feed.xml" rel="self" type="application/rss+xml"/><image><url>https://feed.craftedsignal.io/favicon-32x32.png</url><title>CraftedSignal Threat Feed</title><link>https://feed.craftedsignal.io/</link><width>32</width><height>32</height></image><webfeeds:icon>https://feed.craftedsignal.io/favicon.svg</webfeeds:icon><item><title>Arbitrary Code Execution Vulnerability in RPM Package Manager</title><link>https://feed.craftedsignal.io/briefs/2026-08-rpm-vulnerability/</link><pubDate>Tue, 25 Aug 2026 09:59:33 +0000</pubDate><author>hello@craftedsignal.io</author><guid isPermaLink="true">https://feed.craftedsignal.io/briefs/2026-08-rpm-vulnerability/</guid><description>A local vulnerability in the RPM package management utility allows an attacker to execute arbitrary code with the privileges of the user executing the command.</description><content:encoded><![CDATA[<p>The BSI has reported a vulnerability in the RPM (RPM Package Manager) utility that allows a local attacker to execute arbitrary code. The flaw, identified as CVE-2024-8782, is triggered when an attacker influences the package installation or query process, leading to the execution of attacker-controlled code under the context of the user running the RPM command. This vulnerability poses a risk to Linux systems where users with local access, or automated scripts, perform package operations on untrusted or manipulated package files. Defenders should prioritize updating RPM packages to the latest vendor-supplied versions to mitigate this local escalation path.</p>
<h2 id="impact">Impact</h2>
<p>Successful exploitation allows a local attacker to gain the execution privileges of the current user, potentially leading to unauthorized system changes, data exfiltration, or further privilege escalation if the RPM command is executed by privileged accounts or as root.</p>
<h2 id="recommendation">Recommendation</h2>
<ul>
<li>Identify all Linux systems utilizing RPM for package management.</li>
<li>Apply the latest security patches for the RPM utility provided by the respective Linux distribution vendor to resolve CVE-2024-8782.</li>
<li>Audit scripts and CI/CD pipelines that automate RPM package installations for potential exposure to untrusted input.</li>
</ul>
]]></content:encoded><category domain="severity">low</category><category domain="type">advisory</category><category>vulnerability</category><category>linux</category><category>code-execution</category></item></channel></rss>