7.5
CVSSv2

CVE-2003-0546

Published: 27/08/2003 Updated: 11/10/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

up2date 3.0.7 and 3.1.23 does not properly verify RPM GPG signatures, which could allow remote malicious users to cause unsigned packages to be installed from the Red Hat Network, if that network is compromised.

Vulnerable Product Search on Vulmon Subscribe to Product

redhat up2date 3.0.7-1

redhat up2date 3.1.23-1