CVE-2015-5287
07.12.2015, 18:59
The abrt-hook-ccpp help program in Automatic Bug Reporting Tool (ABRT) before 2.7.1 allows local users with certain permissions to gain privileges via a symlink attack on a file with a predictable name, as demonstrated by /var/tmp/abrt/abrt-hax-coredump or /var/spool/abrt/abrt-hax-coredump.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| redhat | automatic_bug_reporting_tool | 𝑥 ≤ 2.7.0 |
| redhat | enterprise_linux | 6.0 |
| redhat | enterprise_linux | 7.0 |
| redhat | enterprise_linux_desktop | 7.0 |
| redhat | enterprise_linux_hpc_node | 7.0 |
| redhat | enterprise_linux_server | 7.0 |
| redhat | enterprise_linux_workstation | 7.0 |
𝑥
= Vulnerable software versions
Red Hat Enterprise Linux Releases
Red Hat Product | |||
|---|---|---|---|
| abrt |
| ||
| abrt-addon-ccpp |
| ||
| abrt-addon-kerneloops |
| ||
| abrt-addon-pstoreoops |
| ||
| abrt-addon-python |
| ||
| abrt-addon-upload-watch |
| ||
| abrt-addon-vmcore |
| ||
| abrt-addon-xorg |
| ||
| abrt-cli |
| ||
| abrt-console-notification |
| ||
| abrt-dbus |
| ||
| abrt-desktop |
| ||
| abrt-devel |
| ||
| abrt-gui |
| ||
| abrt-gui-devel |
| ||
| abrt-gui-libs |
| ||
| abrt-libs |
| ||
| abrt-python |
| ||
| abrt-python-doc |
| ||
| abrt-retrace-client |
| ||
| abrt-tui |
| ||
| libreport |
| ||
| libreport-anaconda |
| ||
| libreport-cli |
| ||
| libreport-compat |
| ||
| libreport-devel |
| ||
| libreport-filesystem |
| ||
| libreport-gtk |
| ||
| libreport-gtk-devel |
| ||
| libreport-newt |
| ||
| libreport-plugin-bugzilla |
| ||
| libreport-plugin-kerneloops |
| ||
| libreport-plugin-logger |
| ||
| libreport-plugin-mailx |
| ||
| libreport-plugin-reportuploader |
| ||
| libreport-plugin-rhtsupport |
| ||
| libreport-plugin-ureport |
| ||
| libreport-python |
| ||
| libreport-rhel |
| ||
| libreport-rhel-anaconda-bugzilla |
| ||
| libreport-rhel-bugzilla |
| ||
| libreport-web |
| ||
| libreport-web-devel |
|
Vulnerability Media Exposure
References