Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Rpm

First CVE: Nov 6, 2006Active for: 20 yearsTotal CVEs: 26
30.9
VTI Score
Low

RPM is the package manager at the foundation of Red Hat–based Linux distributions and related systems, with a relatively narrow product scope that masks its ubiquity across enterprise and embedded Linux deployments. The vendor's vulnerability footprint concentrates in the core RPM package manager, its successor DNF5, and supporting libraries such as libdnf and libcomps, all of which handle package installation, verification, and code execution at a privileged level. Recurring weakness classes reflect the security-critical nature of this role: link-following and path-traversal flaws that can misdirect file operations, improper input validation in package metadata parsing, cryptographic signature verification bypasses, and code-injection vectors that arise from the integration of untrusted package content. Defenders should prioritize patch cycles for package manager and related library updates, as flaws in this tier can undermine the integrity of the entire system; live severity, exploitation, and exposure counts are shown alongside this summary.

FAUCET AI Generated
26
Total CVEs
More Total CVEs than 97% of tracked vendors
0.4
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 4% of tracked vendors
7.0
Avg CVSS Score
Higher Avg CVSS Score than 50% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Rpm over time

Volume of CVEsAvg CVSS Base Score
First CVE
Nov 6, 2006
19 years ago
Most Recent CVE
May 8, 2024
807 days ago

Products(6 total)

Top CVEs

Signals from CVEs in this vendor scope (26 CVEs).

26 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2018-10897HIGH
A directory traversal issue was found in reposync, a part of yum-utils, where reposync fails to sanitize paths in remote repository configuration files. If an attacker controls a r
Aug 1, 20188.129NONO
CVE-2011-3378HIGH
RPM 4.4.x through 4.9.x, probably before 4.9.1.2, allows remote attackers to cause a denial of service (memory corruption) and possibly execute arbitrary code via an rpm package wi
Dec 24, 20119.329NONO
CVE-2019-3817HIGH
A use-after-free flaw has been discovered in libcomps before version 0.1.10 in the way ObjMRTrees are merged. An attacker, who is able to make an application read a crafted comps X
Mar 27, 20198.827NONO
CVE-2014-8118HIGH
Integer overflow in RPM 4.12 and earlier allows remote attackers to execute arbitrary code via a crafted CPIO header in the payload section of an RPM file, which triggers a stack-b
Dec 16, 201410.027NONO
CVE-2024-1929HIGH
Local Root Exploit via Configuration Dictionary in dnf5daemon-server before 5.1.17 allows a malicious user to impact Confidentiality and Integrity via Configuration Dictionary. T
May 8, 20248.426NONO
CVE-2017-7500HIGH
It was found that rpm did not properly handle RPM installations when a destination path was a symbolic link to a directory, possibly changing ownership and permissions of an arbitr
Aug 13, 20187.826NONO
CVE-2017-7501HIGH
It was found that versions of rpm before 4.13.0.2 use temporary files with predictable names when installing an RPM. An attacker with ability to write in a directory where files wi
Nov 22, 20177.826NONO
CVE-2021-3445HIGH
A flaw was found in libdnf's signature verification functionality in versions before 0.60.1. This flaw allows an attacker to achieve code execution if they can alter the header inf
May 19, 20217.524NONO
CVE-2021-20271HIGH
A flaw was found in RPM's signature check functionality when reading a package file. This flaw allows an attacker who can convince a victim to install a seemingly verifiable packag
Mar 26, 20217.024NONO
CVE-2021-35939MEDIUM
It was found that the fix for CVE-2017-7500 and CVE-2017-7501 was incomplete: the check was only implemented for the parent directory of the file to be created. A local unprivilege
Aug 26, 20226.723NONO
View all 26 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products26 CVEs
46%
54%
Severity distribution among all CVEs352,294 CVEs
45%
40%
11%
MediumHigh
Attack Vector
Local9 (34.6%)
Network4 (15.4%)
Unknown13 (50.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low8 (30.8%)
High5 (19.2%)
Unknown13 (50.0%)
User Interaction
None8 (30.8%)
Unknown13 (50.0%)
Required5 (19.2%)
Privileges Required
Low3 (11.5%)
High4 (15.4%)
None6 (23.1%)
Unknown13 (50.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (26 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Rpm.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Rpm — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Rpm's Products

View all 3 CNAs →

Top CWEs