Skip to main content

Vendor/product archive

redhat / automatic_bug_reporting_tool CVEs

Beta · best-effort

14 CVEs tagged to redhat / automatic_bug_reporting_tool0 Critical, 5 High, 5 Medium, 4 Low, 0 Unrated.

CVE-2015-3159

Published Jan 14, 2020

The abrt-action-install-debuginfo-to-abrt-cache help program in Automatic Bug Reporting Tool (ABRT) does not properly handle the process environment before invoking abrt-action-in…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2015-3151

Published Jan 14, 2020

Directory traversal vulnerability in abrt-dbus in Automatic Bug Reporting Tool (ABRT) allows local users to read, write to, or change ownership of arbitrary files via unspecified…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2015-3150

Published Jan 14, 2020

abrt-dbus in Automatic Bug Reporting Tool (ABRT) allows local users to delete or change the ownership of arbitrary files via the problem directory argument to the (1) ChownProblem…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2015-3147

Published Jan 14, 2020

daemon/abrt-handle-upload.in in Automatic Bug Reporting Tool (ABRT), when moving problem reports from /var/spool/abrt-upload, allows local users to write to arbitrary files or pos…

CVSS 6.5 · Medium

CVE-2015-1869

Published Jan 14, 2020

The default event handling scripts in Automatic Bug Reporting Tool (ABRT) allow local users to gain privileges as demonstrated by a symlink attack on a var_log_messages file.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2013-4209

Published May 1, 2018

Automatic Bug Reporting Tool (ABRT) before 2.1.6 allows local users to obtain sensitive information about arbitrary files via vectors related to sha1sums.

CVSS 3.3 · Low
Vendor/product tagsBeta · best-effort

CVE-2015-3315

Published Jun 26, 2017

Automatic Bug Reporting Tool (ABRT) allows local users to read, change the ownership of, or have other unspecified impact on arbitrary files via a symlink attack on (1) /var/tmp/a…

CVSS 7.8 · High

CVE-2015-3142

Published Jun 26, 2017

The kernel-invoked coredump processor in Automatic Bug Reporting Tool (ABRT) does not properly check the ownership of files before writing core dumps to them, which allows local u…

CVSS 4.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2015-1870

Published Jun 26, 2017

The event scripts in Automatic Bug Reporting Tool (ABRT) uses world-readable permission on a copy of sosreport file in problem directories, which allows local users to obtain sens…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-5660

Published Mar 12, 2013

abrt-action-install-debuginfo in Automatic Bug Reporting Tool (ABRT) 2.0.9 and earlier allows local users to set world-writable permissions for arbitrary files and possibly gain p…

CVSS 6.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-5659

Published Mar 12, 2013

Untrusted search path vulnerability in plugins/abrt-action-install-debuginfo-to-abrt-cache.c in Automatic Bug Reporting Tool (ABRT) 2.0.9 and earlier allows local users to load an…

CVSS 3.7 · Low
Vendor/product tagsBeta · best-effort

CVE-2012-1106

Published Jul 3, 2012

The C handler plug-in in Automatic Bug Reporting Tool (ABRT), possibly 2.0.8 and earlier, does not properly set the group (GID) permissions on core dump files for setuid programs…

CVSS 1.9 · Low
Vendor/product tagsBeta · best-effort
Showing 1-14 of 14 CVEsPage 1 of 1