CVE-2012-6088
published 2013-01-18CVE-2012-6088: The rpmpkgRead function in lib/package.c in RPM 4.10.x before 4.10.2 does not return an error code in certain situations involving an "unparseable signature,"…
PriorityP423medium4.3CVSS 2.0
AVNACMAuNCNIPAN
EPSS
2.25%
81.0th percentile
The rpmpkgRead function in lib/package.c in RPM 4.10.x before 4.10.2 does not return an error code in certain situations involving an "unparseable signature," which allows remote attackers to bypass RPM signature checks via a crafted package.
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | rpm | < rpm 4.10.1-2.1 (bookworm) | rpm 4.10.1-2.1 (bookworm) |
| rpm | rpm | — | — |
| rpm | rpm | — | — |
| rpm | rpm | >= 0 < 4.10.1-2.1 | 4.10.1-2.1 |
| rpm | rpm | >= 0 < 4.10.1-2.1 | 4.10.1-2.1 |
| rpm | rpm | >= 0 < 4.10.1-2.1 | 4.10.1-2.1 |
| rpm | rpm | >= 0 < 4.10.1-2.1 | 4.10.1-2.1 |
CVSS provenance
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:N/I:P/A:N
osv4.3MEDIUM
vendor_debian4.3MEDIUM
vendor_redhat4.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
rpm: Signature checking function returned success on (possibly malicious ) rpm packages
vendor_redhat·2023-02-13·CVSS 4.3
CVE-2012-6088 [MEDIUM] CWE-255 rpm: Signature checking function returned success on (possibly malicious ) rpm packages
rpm: Signature checking function returned success on (possibly malicious ) rpm packages
The rpmpkgRead function in lib/package.c in RPM 4.10.x before 4.10.2 does not return an error code in certain situations involving an "unparseable signature," which allows remote attackers to bypass RPM signature checks via a crafted package.
A flaw was found in rpm. The rpmpkgRead function in lib/package.c in the RPM package does not return an error code in certain situations involving an "unparseable signature." This flaw allows remote attackers to bypass RPM signature checks via a crafted package.
Statement: Not vulnerable. This issue did not affect the versions of rpm as shipped with Red Hat Enterprise Linux 5 and 6 as they did not include the upstream commit e8bc3ff5d780f4ee6656c24464402723e5fb0
Ubuntu
RPM vulnerability
vendor_ubuntu·2013-01-17
CVE-2012-6088 RPM vulnerability
Title: RPM vulnerability
Summary: RPM could incorrectly validate package signatures.
It was discovered that RPM incorrectly handled signature checking. An
attacker could create a specially-crafted rpm with an invalid signature
which could pass the signature validation check.
Instructions: In general, a standard system update will make all the necessary changes.
Debian
CVE-2012-6088: rpm - The rpmpkgRead function in lib/package.c in RPM 4.10.x before 4.10.2 does not re...
vendor_debian·2012·CVSS 4.3
CVE-2012-6088 [MEDIUM] CVE-2012-6088: rpm - The rpmpkgRead function in lib/package.c in RPM 4.10.x before 4.10.2 does not re...
The rpmpkgRead function in lib/package.c in RPM 4.10.x before 4.10.2 does not return an error code in certain situations involving an "unparseable signature," which allows remote attackers to bypass RPM signature checks via a crafted package.
Scope: local
bookworm: resolved (fixed in 4.10.1-2.1)
bullseye: resolved (fixed in 4.10.1-2.1)
forky: resolved (fixed in 4.10.1-2.1)
sid: resolved (fixed in 4.10.1-2.1)
trixie: resolved (fixed in 4.10.1-2.1)
GHSA
GHSA-2frm-49v8-4jhm: The rpmpkgRead function in lib/package
ghsa_unreviewed·2022-05-17
CVE-2012-6088 [MEDIUM] GHSA-2frm-49v8-4jhm: The rpmpkgRead function in lib/package
The rpmpkgRead function in lib/package.c in RPM 4.10.x before 4.10.2 does not return an error code in certain situations involving an "unparseable signature," which allows remote attackers to bypass RPM signature checks via a crafted package.
OSV
CVE-2012-6088: The rpmpkgRead function in lib/package
osv·2013-01-18·CVSS 4.3
CVE-2012-6088 [MEDIUM] CVE-2012-6088: The rpmpkgRead function in lib/package
The rpmpkgRead function in lib/package.c in RPM 4.10.x before 4.10.2 does not return an error code in certain situations involving an "unparseable signature," which allows remote attackers to bypass RPM signature checks via a crafted package.
No detection rules found.
No public exploits indexed.
http://rpm.org/gitweb?p=rpm.git%3Ba=commitdiff%3Bh=3d74c43http://rpm.org/wiki/Releases/4.10.2http://secunia.com/advisories/51706http://www.openwall.com/lists/oss-security/2013/01/03/9http://www.securityfocus.com/bid/57138http://www.ubuntu.com/usn/USN-1694-1https://bugzilla.novell.com/show_bug.cgi?id=796375https://exchange.xforce.ibmcloud.com/vulnerabilities/80953http://rpm.org/gitweb?p=rpm.git%3Ba=commitdiff%3Bh=3d74c43http://rpm.org/wiki/Releases/4.10.2http://secunia.com/advisories/51706http://www.openwall.com/lists/oss-security/2013/01/03/9http://www.securityfocus.com/bid/57138http://www.ubuntu.com/usn/USN-1694-1https://bugzilla.novell.com/show_bug.cgi?id=796375https://exchange.xforce.ibmcloud.com/vulnerabilities/80953
2013-01-18
Published