Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2021-20271
Description:A flaw was found in RPM's signature check functionality when reading a package file. This flaw allows an attacker who can convince a victim to install a seemingly verifiable package, whose signature header was modified, to cause RPM database corruption and execute code. The highest threat from this vulnerability is to data integrity, confidentiality, and system availability.
Test IDs: 1.3.6.1.4.1.25623.1.0.883396  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2021-20271
FEDORA-2021-2383d950fd
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/VHRPNBCRPDJHHQE3MBPSZK4H7X2IM7AC/
FEDORA-2021-662680e477
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/YILPBTPSBRYL4POBI3F4YUSVPSOQNJBY/
FEDORA-2021-8d52a8a999
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/TMGXO3W6DHPO62GJ4VVF5DEUX5DRUR5K/
GLSA-202107-43
https://security.gentoo.org/glsa/202107-43
https://bugzilla.redhat.com/show_bug.cgi?id=1934125
https://bugzilla.redhat.com/show_bug.cgi?id=1934125
https://github.com/rpm-software-management/rpm/commit/d6a86b5e69e46cc283b1e06c92343319beb42e21
https://github.com/rpm-software-management/rpm/commit/d6a86b5e69e46cc283b1e06c92343319beb42e21
https://www.starwindsoftware.com/security/sw-20220805-0002/
https://www.starwindsoftware.com/security/sw-20220805-0002/




© 1998-2025 E-Soft Inc. All rights reserved.