CVE-2015-5287: Red Hat Automatic Bug Reporting Tool
Red Hat Automatic Bug Reporting工具(ABRT)包含一種特權升級漏洞,可以讓擁有一定許可權的本地使用者透過對一個具有可預見名稱的檔案的共鳴連結攻擊獲得許可權。受影響的產品(產品)可能是終身(EoL)和/或終身(EoS)。建議使用者停止使用和/或向支援的版本過渡。
CISA (English)
Red Hat Automatic Bug Reporting Tool (ABRT) contains a privilege escalation vulnerability that could allow local users with certain permissions to gain privileges via a symlink attack on a file with a predictable name. The impacted product(s) could be end-of-life (EoL) and/or end-of-service (EoS). Users are advised to discontinue use and/or transition to a supported version.
- 廠商
- Red Hat
- 產品
- Automatic Bug Reporting Tool
- 漏洞
- Red Hat Automatic Bug Reporting Tool Privilege Escalation Vulnerability
- 加入日期
- 2026年8月26日
- CISA 修補期限(美國聯邦機關)
- 2026年9月9日
- 已知用於勒索軟體攻擊
- 未知
- 弱點(CWE)
- –
參考資料
本站僅為資訊目的整理 CISA 目錄,並非資安建議。請遵循廠商指引與官方公告。
最後更新: · 目錄版本 2026.10.02