CVE

Id
44781  
CVE No.
CVE-2010-2197  
Status
Candidate  
Description
rpmbuild in RPM 4.8.0 and earlier does not properly parse the syntax of spec files, which allows user-assisted remote attackers to remove home directories via vectors involving a ;~ (semicolon tilde) sequence in a Name tag.  
Phase
Assigned (20100608)  
Votes
None (candidate not yet proposed)  
Comments