CVE-2026-84838HighCVSS 7.8
Rpm: command injection in rpmuncompress via unescaped filenames passed to popen()
🔗 CVE IDs covered (1)
🎯 Affected products2
- azl3 rpm 4.18.2-1 on Azure Linux 3.0
- azl3 rpm 4.18.2-2 on Azure Linux 3.0
✅ Remediation
Security Update