Security News

Cybersecurity news aggregator

🔓
HIGH Vulnerabilities BSI Germany

[NEU] [UNGEPATCHT] [hoch] RPM: Schwachstelle ermöglicht Codeausführung

A high-severity vulnerability (CVSS 7.8) in the RPM Package Manager allows an anonymous attacker to execute arbitrary code; the attack vector is not remote. The advisory, WID-SEC-2026-3159, affects the open-source RPM version as of September 2, 2026, but does not specify version ranges, a fixed version, or a workaround.
Read Full Article →

[WID-SEC-2026-3159] RPM: Schwachstelle ermöglicht Codeausführung CVSS Base Score 7.8 (hoch) CVSS Temporal Score 7.1 (hoch) Remoteangriff nein Datum 02.09.2026 Stand 03.09.2026 Mitigation nein Betroffene Systeme Betriebssystem Linux Produktbeschreibung Der RPM Package Manager (RPM) ist ein Kommandozeilen Paket-Management Tool zur Installation, Deinstallation, Überprüfung, Abfrage und Aktualisieren von Software-Paketen auf Linux Systemen. Produkte 02.09.2026 Open Source RPM Angriff Angriff Ein entfernter, anonymer Angreifer kann eine Schwachstelle in RPM ausnutzen, um beliebigen Programmcode auszuführen. CVE Informationen Versionshistorie Feedback zum Advisory geben

Share this article