Skip to content
Threat Feed

Product

RPM

6 briefs RSS
high advisory

Heap-Based Buffer Overflow in RPM Package Manager (CVE-2026-95520)

A heap-based buffer overflow in the RPM Package Manager allows for out-of-bounds writes and potential code execution when processing maliciously crafted RPM files containing specific symlink entries.

rpm vulnerability remote-code-execution linux
1t 1c
high advisory

Multiple Arbitrary Code Execution Vulnerabilities in RPM

Multiple unpatched vulnerabilities in the RPM package manager allow an unauthenticated attacker to achieve arbitrary code execution on systems processing malicious packages.

RPM +1 vulnerability linux local-exploitation
2t 1c updated
high advisory

Command Injection in RPM Package Manager

A command injection vulnerability (CVE-2026-95521) in the rpm package manager allows arbitrary command execution when processing maliciously crafted source RPM files containing %() macro constructs.

rpm vulnerability command-injection supply-chain
1t 1c
high advisory

Command Injection in rpm via Crafted .gem Filenames

A local command injection vulnerability (CVE-2026-84233) in the rpm utility allows execution of arbitrary commands when rpmuncompress processes maliciously crafted filenames containing RPM macro syntax.

rpm
1t 1c
low advisory

Arbitrary Code Execution Vulnerability in RPM Package Manager

A local vulnerability in the RPM package management utility allows an attacker to execute arbitrary code with the privileges of the user executing the command.

RPM vulnerability linux code-execution
1t 1c
high advisory

CVE-2026-44604: RPM rpmuncompress Command Injection Vulnerability

A command injection vulnerability (CVE-2026-44604) exists in the `rpmuncompress` utility of RPM; when extracting specially crafted ZIP, 7z, or GEM archives, an attacker can inject shell commands via a malicious top-level folder name, leading to arbitrary code execution as the user running the extraction.

RPM command-injection CVE-2026-44604 archive-extraction linux
2r 1t 1c