Vulnerability Intelligence Report
Red Hat Automatic Bug Reporting Tool Privilege Escalation Vulnerability
CVE-2015-5287
The abrt-hook-ccpp help program in Automatic Bug Reporting Tool (ABRT) before 2.7.1 allows local users with certain permissions to gain privileges via a symlink attack on a file with a predictable name, as demonstrated by /var/tmp/abrt/abrt-hax-coredump or /var/spool/abrt/abrt-hax-coredump.
CISA KEV
SSVC: Active Exploitation
CVSS Base Score
7.8
HIGH
Exploitability:1.9
Impact Score:5.9
EPSS Probability:3.41%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
—
Authentication
—
Weaponization
—
SSVC Action
—
Weaknesses (CWE)
CWE-59 ↗CWE-59 Improper Link Resolution Before File Access ('Link Following')
Affected Products & Versions
| Vendor | Product | Affected Versions |
|---|---|---|
| n/a | n/a | n/a (affected) |
References & Technical Advisories
No reference links found.
Threat Intelligence Signals
Identity & Timeline
| Status | PUBLISHED |
| Assigning Authority | Red Hat, Inc. · Vendor · USA |
| Reserved | 2015-07-01T00:00:00 |
| Published | 2015-12-07T18:00:00 |
| Patch Date | 2015-11-23 |
| Last Updated | 2026-08-27T03:56:39 |
Community Chatter & Buzz