CVE-2026-54230

EUVD-2026-36639
A symlink following vulnerability was found in the ABRT post-create event handler scripts in libreport. Event scripts write output files using shell redirections without the O_NOFOLLOW flag. If the target file is replaced with a symlink, the shell process running as root follows the symlink and writes content to the symlink target, allowing arbitrary file overwrites on the system.
Link Following
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7 HIGH
LOCAL
HIGH
LOW
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 8.09%
Affected Products (NVD)
VendorProductVersion
redhatautomatic_bug_reporting_tool
*
redhatenterprise_linux
7.0
redhatenterprise_linux
8.0
𝑥
= Vulnerable software versions
Red Hat logo
Red Hat Enterprise Linux Releases
Red Hat Product
Release
abrt
RHEL 8
0:2.10.9-26.el8_10
fixed
abrt-addon-ccpp
RHEL 8
0:2.10.9-26.el8_10
fixed
abrt-addon-coredump-helper
RHEL 8
0:2.10.9-26.el8_10
fixed
abrt-addon-kerneloops
RHEL 8
0:2.10.9-26.el8_10
fixed
abrt-addon-pstoreoops
RHEL 8
0:2.10.9-26.el8_10
fixed
abrt-addon-vmcore
RHEL 8
0:2.10.9-26.el8_10
fixed
abrt-addon-xorg
RHEL 8
0:2.10.9-26.el8_10
fixed
abrt-cli
RHEL 8
0:2.10.9-26.el8_10
fixed
abrt-cli-ng
RHEL 8
0:2.10.9-26.el8_10
fixed
abrt-console-notification
RHEL 8
0:2.10.9-26.el8_10
fixed
abrt-dbus
RHEL 8
0:2.10.9-26.el8_10
fixed
abrt-desktop
RHEL 8
0:2.10.9-26.el8_10
fixed
abrt-gui
RHEL 8
0:2.10.9-26.el8_10
fixed
abrt-gui-libs
RHEL 8
0:2.10.9-26.el8_10
fixed
abrt-libs
RHEL 8
0:2.10.9-26.el8_10
fixed
abrt-plugin-machine-id
RHEL 8
0:2.10.9-26.el8_10
fixed
abrt-plugin-sosreport
RHEL 8
0:2.10.9-26.el8_10
fixed
abrt-tui
RHEL 8
0:2.10.9-26.el8_10
fixed
python3-abrt
RHEL 8
0:2.10.9-26.el8_10
fixed
python3-abrt-addon
RHEL 8
0:2.10.9-26.el8_10
fixed
python3-abrt-container-addon
RHEL 8
0:2.10.9-26.el8_10
fixed
python3-abrt-doc
RHEL 8
0:2.10.9-26.el8_10
fixed