AUGUST 16, 2026
Live Feed
Back to database
Case File

CVE-2026-44605

MEDIUM · CVSS 5.5 EPSS 0.14%

Source: NVD + CISA KEV + EPSS · Published 2026-08-05 · Last synced 2026-08-16

CyberRota Analysis

AI-Generated

A heap buffer overflow vulnerability in the RPM Package Manager allows local users to exploit specially crafted NDB database files, resulting in incorrect memory allocation. This flaw can lead to denial of service, rendering the system unavailable. Organizations using RPM should prioritize patching this vulnerability to mitigate potential disruptions.

CVE
CVE-2026-44605
Severity
MEDIUM
CVSS
5.5
EPSS
0.14%

Original NVD Description

A flaw was found in the RPM Package Manager (RPM). A local user could be affected by a heap buffer overflow vulnerability when processing a specially crafted NDB database file. This issue arises from an error in how RPM handles certain calculations during file parsing, leading to an incorrect memory allocation. An attacker could leverage this to cause a denial of service, making the system unavailable.