Skip to content
COOEY

EXPOSURES › CVE-2015-5287

CVE-2015-5287

HIGH ⌖ ON CISA KEV · EXPLOITED
DETAIL
SourceCISA-KEV · kev Published2026-08-26 Referencehttps://nvd.nist.gov/vuln/detail/CVE-2015-5287 ↗
⌖ EXPLOITED IN THE WILD SHAME 65/100 exploited-in-wildprivilege-escalationunpatched

A privilege escalation flaw in Red Hat's Automatic Bug Reporting Tool allowed local users to escalate privileges via a symlink attack on a predictable file.

The Red Hat Automatic Bug Reporting Tool (ABRT) contained a privilege escalation vulnerability that permitted local users with specific permissions to gain elevated access through a symlink attack on a file with a predictable name. DIB organizations must ensure all software components, including EoL/EoS tools, are patched or replaced to prevent local privilege escalation that could compromise system integrity and violate CMMC/NIST 800-171 controls. Organizations should transition to supported versions immediately to mitigate this actively exploited vulnerability.

Shame score — The vulnerability was actively exploited in the wild (KEV) and allowed privilege escalation, indicating a significant avoidable risk that was not mitigated by timely patching or proper lifecycle management.

▸ RECOMMENDED ACTION  Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.

DESCRIPTION

Red Hat Automatic Bug Reporting Tool (ABRT) contains a privilege escalation vulnerability that could allow local users with certain permissions to gain privileges via a symlink attack on a file with a predictable name. The impacted product(s) could be end-of-life (EoL) and/or end-of-service (EoS). Users are advised to discontinue use and/or transition to a supported version.

AFFECTED FEDRAMP PRODUCTS · 1
PRODUCTSTATUS
Red Hat OpenShift Service on AWS (ROSA)
Red Hat
In Process