CVE-2015-1338

Apport < 2.19 - Denial of Service and Privilege Escalation via Symlink Attack on vmcore.log

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2015-1338. PoCs published by halfdog.

AI-analyzed exploit summary The writeup describes a vulnerability in Ubuntu Vivid's apport kernel crash dump handling, where insecure file operations in /var/crash/ allow local privilege escalation or DoS due to lack of O_EXCL/O_NOFOLLOW flags. The PoC is referenced but not included in the provided text.

Description

kernel_crashdump in Apport before 2.19 allows local users to cause a denial of service (disk consumption) or possibly gain privileges via a (1) symlink or (2) hard link attack on /var/crash/vmcore.log.

Exploits (1)

exploitdb WRITEUP
by halfdog · textlocallinux
https://www.exploit-db.com/exploits/38353

The writeup describes a vulnerability in Ubuntu Vivid's apport kernel crash dump handling, where insecure file operations in /var/crash/ allow local privilege escalation or DoS due to lack of O_EXCL/O_NOFOLLOW flags. The PoC is referenced but not included in the provided text.

Classification
Writeup 90%
Attack Type
Lpe | Dos
Complexity
Moderate
Reliability
Theoretical
Target: Ubuntu Vivid (apport kernel_crashdump)
No auth needed
Prerequisites: Local access to the system · Write access to /var/crash/
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (7)

Core 7
Core References
Vendor Advisory vendor-advisory x_refsource_ubuntu
http://www.ubuntu.com/usn/USN-2744-1
Patch x_refsource_confirm
https://launchpad.net/apport/trunk/2.19
Exploit exploit x_refsource_exploit-db
https://www.exploit-db.com/exploits/38353/
Mailing List mailing-list x_refsource_fulldisc
http://seclists.org/fulldisclosure/2015/Sep/101

Scores

EPSS 0.0091
EPSS Percentile 55.3%

Details

CWE
CWE-59
Status published
Products (4)
apport_project/apport < 2.18.1
canonical/ubuntu_linux 12.04
canonical/ubuntu_linux 14.04
canonical/ubuntu_linux 15.04
Published Oct 01, 2015
Tracked Since Feb 18, 2026