Back

HIGH

abrt: Various race-conditions and symlink issues found in abrt

Published Jun 26, 2017

Description

Automatic Bug Reporting Tool (ABRT) allows local users to read, change the ownership of, or have other unspecified impact on arbitrary files via a symlink attack on (1) /var/tmp/abrt/*/maps, (2) /tmp/jvm-*/hs_error.log, (3) /proc/*/exe, (4) /etc/os-release in a chroot, or (5) an unspecified root directory related to librpm.

Affected products

Remediation

Red Hat statement

This issue affects the versions of the abrt package as shipped with Red Hat Enterprise Linux 6 and 7.

Red Hat mitigation

It is recommended to disable abrt via the following command line, till the flaws have been resolved: sysctl -w kern.core_pattern=core Note: This will reset, if abrt is re-started.

Metrics

Weaknesses (1)

References (14)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Jun 26, 2017
Updated Aug 6, 2024
Reserved Apr 16, 2015
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity Important
Public date Apr 14, 2015