PT-2015-6825 · Red Hat+1 · Abrt+2
Jakub Filak
·
Published
2015-11-23
·
Updated
2023-02-13
·
CVE-2015-5273
CVSS v2.0
3.6
Low
| Vector | AV:L/AC:L/Au:N/C:N/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
ABRT versions prior to 2.7.1
Description
The issue allows local users to write to arbitrary files via a symlink attack on unpacked.cpio in a pre-created directory with a predictable name in /var/tmp. This is related to the abrt-action-install-debuginfo-to-abrt-cache help program in the Automatic Bug Reporting Tool (ABRT).
Recommendations
For versions prior to 2.7.1, update to version 2.7.1 or later to resolve the issue. As a temporary workaround, consider restricting access to the /var/tmp directory to minimize the risk of exploitation.
Exploit
Fix
Link Following
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Abrt
Centos
Red Hat