RaqibCTI
CVE

CVE-2015-5287

P2
Red Hat Automatic Bug Reporting Tool Privilege Escalation Vulnerability
Red Hat · Automatic Bug Reporting Tool
Date added (CISA)
2026-08-26
Remediation due
2026-09-09
Known ransomware use
Not indicated
Remediation priority
P2past CISA due date
Associated with
Related to
  • Lazarus Group (TraderTraitor cluster) / APT38 / BlueNoroff · SPECTREcampaignCorrelated cluster2026-09-16
  • BadIIScampaignCorrelated cluster2026-08-26
  • SPECTREcampaignCorrelated cluster2026-08-20

Description

Red Hat Automatic Bug Reporting Tool (ABRT) contains a privilege escalation vulnerability that could allow local users with certain permissions to gain privileges via a symlink attack on a file with a predictable name. The impacted product(s) could be end-of-life (EoL) and/or end-of-service (EoS). Users are advised to discontinue use and/or transition to a supported version.

Source: NVD ↗ · CISA KEV Catalog ↗