AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2010-2059

HIGH · CVSS 7.2 EPSS 0.40%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2010-06-08 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2010-2059
Severity
HIGH
CVSS
7.2
EPSS
0.40%

Original NVD Description

lib/fsm.c in RPM 4.8.0 and unspecified 4.7.x and 4.6.x versions, and RPM before 4.4.3, does not properly reset the metadata of an executable file during replacement of the file in an RPM package upgrade, which might allow local users to gain privileges by creating a hard link to a vulnerable (1) setuid or (2) setgid file.