CVE-2006-5466

Publication date 6 November 2006

Last updated 24 July 2024


Ubuntu priority

Heap-based buffer overflow in the showQueryPackage function in librpm in RPM Package Manager 4.4.8, when the LANG environment variable is set to ru_RU.UTF-8, might allow user-assisted attackers to execute arbitrary code via crafted RPM packages.

Status

Package Ubuntu Release Status
rpm 7.04 feisty
Fixed 4.4.1-14build1
6.10 edgy
Fixed 4.4.1-9.1ubuntu0.1
6.06 LTS dapper
Fixed 4.4.1-5ubuntu2.1

References

Related Ubuntu Security Notices (USN)

    • USN-378-1
    • RPM vulnerability
    • 4 November 2006

Other references