Back

HIGH KEV

abrt: incorrect permissions on /var/spool/abrt

Published Dec 7, 2015 ·Due Sep 9, 2026

Description

The abrt-hook-ccpp help program in Automatic Bug Reporting Tool (ABRT) before 2.7.1 allows local users with certain permissions to gain privileges via a symlink attack on a file with a predictable name, as demonstrated by /var/tmp/abrt/abrt-hax-coredump or /var/spool/abrt/abrt-hax-coredump.

Affected products

Remediation

No remediation recorded yet.

Metrics

Weaknesses (1)

References (14)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner redhat
Published Dec 7, 2015
Updated Aug 27, 2026
Reserved Jul 1, 2015
CISA Vulnrichment
Updated Aug 26, 2026
NVD
Status Analyzed
Modified Aug 27, 2026
Red Hat
Severity Moderate
Public date Nov 23, 2015