CVE-2026-54230
EUVD-2026-3663913.06.2026, 03:16
A symlink following vulnerability was found in the ABRT post-create event handler scripts in libreport. Event scripts write output files using shell redirections without the O_NOFOLLOW flag. If the target file is replaced with a symlink, the shell process running as root follows the symlink and writes content to the symlink target, allowing arbitrary file overwrites on the system.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| redhat | automatic_bug_reporting_tool | * |
| redhat | enterprise_linux | 7.0 |
| redhat | enterprise_linux | 8.0 |
𝑥
= Vulnerable software versions
Red Hat Enterprise Linux Releases
Red Hat Product | |||
|---|---|---|---|
| abrt |
| ||
| abrt-addon-ccpp |
| ||
| abrt-addon-coredump-helper |
| ||
| abrt-addon-kerneloops |
| ||
| abrt-addon-pstoreoops |
| ||
| abrt-addon-vmcore |
| ||
| abrt-addon-xorg |
| ||
| abrt-cli |
| ||
| abrt-cli-ng |
| ||
| abrt-console-notification |
| ||
| abrt-dbus |
| ||
| abrt-desktop |
| ||
| abrt-gui |
| ||
| abrt-gui-libs |
| ||
| abrt-libs |
| ||
| abrt-plugin-machine-id |
| ||
| abrt-plugin-sosreport |
| ||
| abrt-tui |
| ||
| python3-abrt |
| ||
| python3-abrt-addon |
| ||
| python3-abrt-container-addon |
| ||
| python3-abrt-doc |
|
References