CVE-2015-5287: Red Hat Automatic Bug Reporting Tool
Red Hat 自動バグ報告ツール(ABRT)には、ローカルユーザーが特定の権限を持つ権限を持つ権限を持つ権限を持つ特権エスカレーション脆弱性が含まれているため、予測可能な名前のファイルに対する対談攻撃を介して特権を獲得できます。インパクトのある製品(s)は、エンド・オブ・ライフ(EoL)および/またはエンド・オブ・サービス(EoS)である可能性があります。ユーザーは、サポートされたバージョンへの使用および/または移行を中止することを推奨します。
CISA (English)
Red Hat Automatic Bug Reporting Tool (ABRT) contains a privilege escalation vulnerability that could allow local users with certain permissions to gain privileges via a symlink attack on a file with a predictable name. The impacted product(s) could be end-of-life (EoL) and/or end-of-service (EoS). Users are advised to discontinue use and/or transition to a supported version.
- ベンダー
- Red Hat
- 製品
- Automatic Bug Reporting Tool
- 脆弱性
- Red Hat Automatic Bug Reporting Tool Privilege Escalation Vulnerability
- 追加日
- 2026/08/26
- CISA対応期限(米国連邦機関向け)
- 2026/09/09
- ランサムウェア攻撃での利用
- 不明
- 弱点(CWE)
- –
参考情報
当サイトはCISAのカタログを情報提供のために要約したもので、セキュリティ上の助言ではありません。ベンダーの案内と公式のアドバイザリーに従ってください。
最終更新: · カタログのバージョン 2026.10.02