SecBoard
Zurück zur CVE-Übersicht

CVE-2015-5287

HIGH(7.8)KEV — Aktiv ausgenutzt

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Risk Signal Score51/100 — HOCH
  • CVSS 7.8 — Hoch
  • Im CISA KEV-Katalog (aktiv ausgenutzt)

Erwähnungen (letzte 60 Tage)

Artikel

CISA KEV

Bestätigt ausgenutzt

EPSS-Score

5.0%

Exploit-Wahrscheinlichkeit (30 Tage)

CVSS Score

7.8

Technische Schwere

SecBoard-Einordnung

CVE-2015-5287 betrifft das Automatic Bug Reporting Tool (ABRT) und ermöglicht lokalen Benutzern mit bestimmten Berechtigungen eine Privilegienerhöhung. Die Schwachstelle liegt im Hilfsprogramm abrt-hook-ccpp und kann über einen Symlink-Angriff auf Dateien mit vorhersagbaren Namen ausgenutzt werden, wie z.B. /var/tmp/abrt/abrt-hax-coredump. Dies kann zur Ausführung von Code mit erhöhten Rechten führen.

KI-gestützte Einordnung auf Basis der NVD-Daten.

Beschreibung

The abrt-hook-ccpp help program in Automatic Bug Reporting Tool (ABRT) before 2.7.1 allows local users with certain permissions to gain privileges via a symlink attack on a file with a predictable name, as demonstrated by /var/tmp/abrt/abrt-hax-coredump or /var/spool/abrt/abrt-hax-coredump.

Betroffene Produkte

  • cpe:2.3:a:redhat:automatic_bug_reporting_tool:*:*:*:*:*:*:*:*
  • cpe:2.3:o:oracle:linux:7:*:*:*:*:*:*:*
  • cpe:2.3:o:redhat:enterprise_linux:6.0:*:*:*:*:*:*:*
  • cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:*
  • cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*
  • cpe:2.3:o:redhat:enterprise_linux_hpc_node:7.0:*:*:*:*:*:*:*
  • cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*
  • cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*

Referenzen