CVE-2015-1869

The default event handling scripts in Automatic Bug Reporting Tool (ABRT) allow local users to gain privileges as demonstrated by a symlink attack on a var_log_messages file.
Configurations

Configuration 1 (hide)

cpe:2.3:a:redhat:automatic_bug_reporting_tool:-:*:*:*:*:*:*:*

History

13 Feb 2023, 00:47

Type Values Removed Values Added
Summary It was discovered that the default event handling scripts installed by ABRT did not handle symbolic links correctly. A local attacker with write access to an ABRT problem directory could use this flaw to escalate their privileges. The default event handling scripts in Automatic Bug Reporting Tool (ABRT) allow local users to gain privileges as demonstrated by a symlink attack on a var_log_messages file.
References
  • {'url': 'https://access.redhat.com/security/cve/CVE-2015-1869', 'name': 'https://access.redhat.com/security/cve/CVE-2015-1869', 'tags': [], 'refsource': 'MISC'}
  • {'url': 'https://access.redhat.com/errata/RHSA-2015:1083', 'name': 'https://access.redhat.com/errata/RHSA-2015:1083', 'tags': [], 'refsource': 'MISC'}
  • {'url': 'https://access.redhat.com/errata/RHSA-2015:1210', 'name': 'https://access.redhat.com/errata/RHSA-2015:1210', 'tags': [], 'refsource': 'MISC'}

02 Feb 2023, 20:20

Type Values Removed Values Added
Summary The default event handling scripts in Automatic Bug Reporting Tool (ABRT) allow local users to gain privileges as demonstrated by a symlink attack on a var_log_messages file. It was discovered that the default event handling scripts installed by ABRT did not handle symbolic links correctly. A local attacker with write access to an ABRT problem directory could use this flaw to escalate their privileges.
References
  • (MISC) https://access.redhat.com/security/cve/CVE-2015-1869 -
  • (MISC) https://access.redhat.com/errata/RHSA-2015:1083 -
  • (MISC) https://access.redhat.com/errata/RHSA-2015:1210 -

Information

Published : 2020-01-14 18:15

Updated : 2023-12-10 13:13


NVD link : CVE-2015-1869

Mitre link : CVE-2015-1869

CVE.ORG link : CVE-2015-1869


JSON object : View

Products Affected

redhat

  • automatic_bug_reporting_tool
CWE
CWE-59

Improper Link Resolution Before File Access ('Link Following')