CVE-2015-5287: Red Hat Automatic Bug Reporting Tool Privilege Escalation Vulnerability
Summary
A privilege escalation vulnerability has been identified in Red Hat's Automatic Bug Reporting Tool (ABRT). Local users with specific permissions can exploit this flaw using a symlink attack on a file with a predictable name to gain elevated privileges. Affected versions may be end-of-life, and users are advised to discontinue use or migrate to supported versions.
IFF Assessment
This vulnerability allows local users to escalate privileges, which is detrimental to system security.
Severity
CISA KEV: Listed as actively exploited. Federal patch due: September 09, 2026. Known ransomware use: Unknown.
Defender Context
This vulnerability highlights the importance of keeping software up-to-date, especially system diagnostic tools, as they can become targets for privilege escalation. Defenders should prioritize patching or migrating away from end-of-life products like older versions of ABRT to prevent potential exploitation by local attackers.