CVE-2015-5273
ABRT <2.7.1 - Local File Write
Title source: llmDescription
The abrt-action-install-debuginfo-to-abrt-cache help program in Automatic Bug Reporting Tool (ABRT) before 2.7.1 allows local users to write to arbitrary files via a symlink attack on unpacked.cpio in a pre-created directory with a predictable name in /var/tmp.
Exploits (1)
Scores
EPSS
0.0033
EPSS Percentile
56.2%
Details
CWE
CWE-59
Status
published
Products (5)
redhat/automatic_bug_reporting_tool
< 2.7.0
redhat/enterprise_linux_desktop
7.0
redhat/enterprise_linux_hpc_node
7.0
redhat/enterprise_linux_server
7.0
redhat/enterprise_linux_workstation
7.0
Published
Dec 07, 2015
Tracked Since
Feb 18, 2026