Medium severity5.3NVD Advisory· Published Nov 27, 2019· Updated Jun 16, 2026
CVE-2011-2515
CVE-2011-2515
Description
PackageKit 0.6.17 allows installation of unsigned RPM packages as though they were signed which may allow installation of non-trusted packages and execution of arbitrary code.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
7cpe:2.3:a:packagekit_project:packagekit:0.6.17:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:packagekit_project:packagekit:0.6.17:*:*:*:*:*:*:*
- (no CPE)range: <=0.6.17
- cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*
- packagekit/packagekitv5Range: 0.6.15
Patches
Vulnerability mechanics
References
4- access.redhat.com/security/cve/cve-2011-2515nvdThird Party Advisory
- bugzilla.redhat.com/show_bug.cginvdIssue TrackingThird Party Advisory
- security-tracker.debian.org/tracker/CVE-2011-2515nvdThird Party Advisory
- www.securityfocus.com/bid/48557/infonvdThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.