Back to Database
Status published
High
CVE-2015-1869
The default event handling scripts in Automatic Bug Reporting Tool...
Vulnerability Description
The default event handling scripts in Automatic Bug Reporting Tool (ABRT) allow local users to gain privileges as demonstrated by a symlink attack on a var_log_messages file.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2015-1869
Credits & Attribution
No credits recorded in the NVD database.
References
More from ABRT
View All →CVE-2015-3159
The abrt-action-install-debuginfo-to-abrt-cache help program in Automatic Bug Reporting Tool (ABRT)...
High
7.8
CVE-2015-3151
Directory traversal vulnerability in abrt-dbus in Automatic Bug Reporting Tool...
High
7.8
CVE-2015-3150
abrt-dbus in Automatic Bug Reporting Tool (ABRT) allows local users...
High
7.1
CVE-2015-3147
daemon/abrt-handle-upload.in in Automatic Bug Reporting Tool (ABRT), when moving problem...
Medium
6.5
CVE-2011-4088
ABRT might allow attackers to obtain sensitive information from crash...
High
7.5
Affected Vendor
ABRT
View all reports →Affected Software
ABRT
Vulnerable Versions:
before 7417505e1d93cc95ec648b74e3c801bc67aacb9f
Timeline
Official Publish:
January 14th, 2020
Last Modified:
August 6th, 2024
Added to House:
July 19th, 2026
CVSS Vectors
V3:
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.