CVE-2010-2197
EPSS 0.43%發布日:2010/6/8修改日:2026/4/28
也稱為:DEBIAN-CVE-2010-2197
描述
rpmbuild in RPM 4.8.0 and earlier does not properly parse the syntax of spec files, which allows user-assisted remote attackers to remove home directories via vectors involving a ;~ (semicolon tilde) sequence in a Name tag.
受影響套件(1)
- Debian/rpmfrom 0, < 4.8.1-1