CVE-2010-2197: Medium severity rpm rpm vulnerability
rpmbuild in RPM 4.8.0 and earlier does not properly parse the syntax of spec files, which allows user-assisted remote attackers to remove home directories via vectors involving a ;~ (semicolon tilde) sequence in a Name tag.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2010-2197?
CVE-2010-2197 has a high severity rating due to its potential to allow attackers to delete home directories on affected systems.
How do I fix CVE-2010-2197?
To fix CVE-2010-2197, upgrade to RPM version 4.8.1 or later, which includes the necessary patches.
What are the affected software versions for CVE-2010-2197?
CVE-2010-2197 affects RPM versions up to 4.8.0, including numerous older versions across several major releases.
Is CVE-2010-2197 a remote exploit?
Yes, CVE-2010-2197 can be exploited remotely if a user assists in its execution through crafted input.
Can I mitigate CVE-2010-2197 without patching?
While full mitigation involves patching, limiting user privileges and monitoring file modifications may help reduce risk.