>> RPM "showQueryPackage()" Query Handling Local Buffer Overflow Vulnerability
Title : RPM "showQueryPackage()" Query Handling Local Buffer Overflow Vulnerability VUPEN ID : VUPEN/ADV-2006-4350 CVE ID : CVE-2006-5466
Rated as : Low Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2006-11-06
Technical Description
A vulnerability has been identified in RPM, which could be exploited by attackers to execute arbitrary commands. This flaw is due to a buffer overflow error in the "showQueryPackage()" [lib/query.c] function when displaying results of a package query on systems with certain locales set (e.g. ru_RU.UTF-8), which could be exploited by attackers to compromise a vulnerable system by convincing a user to query a specially crafted RPM package.