Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2015-5273

Опубликовано: 23 нояб. 2015
Источник: redhat
CVSS2: 4.3
EPSS Низкий

Описание

The abrt-action-install-debuginfo-to-abrt-cache help program in Automatic Bug Reporting Tool (ABRT) before 2.7.1 allows local users to write to arbitrary files via a symlink attack on unpacked.cpio in a pre-created directory with a predictable name in /var/tmp.

It was found that the ABRT debug information installer (abrt-action-install-debuginfo-to-abrt-cache) did not use temporary directories in a secure way. A local attacker could use the flaw to create symbolic links and files at arbitrary locations as the abrt user.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6abrtNot affected
Red Hat Enterprise Linux 7abrtFixedRHSA-2015:250523.11.2015
Red Hat Enterprise Linux 7libreportFixedRHSA-2015:250523.11.2015

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-377
https://bugzilla.redhat.com/show_bug.cgi?id=1262252abrt: Insecure temporary directory usage in abrt-action-install-debuginfo-to-abrt-cache

EPSS

Процентиль: 56%
0.00334
Низкий

4.3 Medium

CVSS2

Связанные уязвимости

nvd
больше 9 лет назад

The abrt-action-install-debuginfo-to-abrt-cache help program in Automatic Bug Reporting Tool (ABRT) before 2.7.1 allows local users to write to arbitrary files via a symlink attack on unpacked.cpio in a pre-created directory with a predictable name in /var/tmp.

github
больше 3 лет назад

The abrt-action-install-debuginfo-to-abrt-cache help program in Automatic Bug Reporting Tool (ABRT) before 2.7.1 allows local users to write to arbitrary files via a symlink attack on unpacked.cpio in a pre-created directory with a predictable name in /var/tmp.

oracle-oval
почти 10 лет назад

ELSA-2015-2505: abrt and libreport security update (MODERATE)

EPSS

Процентиль: 56%
0.00334
Низкий

4.3 Medium

CVSS2