V
Scaner-VS
HomeCatalogSourcesCWECAPECATT&CKMitigationsDocs
CVE-2015-5287
CVE
MediumConfirmedExploit available

The abrt-hook-ccpp help program in Automatic Bug Reporting Tool (ABRT) before 2.7.1 allows local users with certain permissions to gain pri…

CVSS
6.9
Medium
EPSS
0.13
p94
Published
2015-01-01
Updated
2015-01-01
Description

The abrt-hook-ccpp help program in Automatic Bug Reporting Tool (ABRT) before 2.7.1 allows local users with certain permissions to gain privileges via a symlink attack on a file with a predictable name, as demonstrated by /var/tmp/abrt/abrt-hax-coredump or /var/spool/abrt/abrt-hax-coredump.

Tags · CWE
CWE-59
CAPEC-17
CAPEC-35
CAPEC-76
CAPEC-132
Affected products
Automatic_bug_reporting_tool ≤ 2.7.0
CVSS vector
AV:L/AC:M/Au:N/C:C/I:C/A:C
Timeline
2015-01-01
Published
2015-01-01
Updated
CVSS 3.1 breakdown
Attack Vector
AV: L
Local (L)
Attack Complexity
AC: M
Medium
Authentication
Au: N
None (N)
Confidentiality Impact
C: C
Complete
Integrity Impact
I: C
Complete
Availability Impact
A: C
Complete
Exploit indicators
EPSS
0.129 · p94
Known exploited (KEV)
No
MITRE ATT&CK
Inferred via CAPEC
└ via CAPEC-35 · CWE-59
└ via CAPEC-35 · CWE-59
└ via CAPEC-132 · CWE-59
└ via CAPEC-35 · CWE-59
Known exploits — Сканер-ВС
38832
exploitdb · https://www.exploit-db.com/exploits/38832
Enterprise
38835
exploitdb · https://www.exploit-db.com/exploits/38835
Enterprise
47421
exploitdb · https://www.exploit-db.com/exploits/47421
Enterprise
Affected software
ProductVendorStatus
abrtTracked
libreportTracked
automatic_bug_reporting_tool*Tracked
enterprise_linux_desktop*Tracked
enterprise_linux_hpc_node*Tracked
enterprise_linux_server*Tracked
enterprise_linux_workstation*Tracked
Source databases
CVE
RED