CVE-2015-1870
26.06.2017, 15:29
The event scripts in Automatic Bug Reporting Tool (ABRT) uses world-readable permission on a copy of sosreport file in problem directories, which allows local users to obtain sensitive information from /var/log/messages via unspecified vectors.Enginsight
Vendor | Product | Version |
---|---|---|
redhat | automatic_bug_reporting_tool | 𝑥 ≤ 2.1.11 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References