EXPOSURES › CVE-2015-5287
CVE-2015-5287
HIGH ⌖ ON CISA KEV · EXPLOITEDA privilege escalation flaw in Red Hat's Automatic Bug Reporting Tool allowed local users to escalate privileges via a symlink attack on a predictable file.
The Red Hat Automatic Bug Reporting Tool (ABRT) contained a privilege escalation vulnerability that permitted local users with specific permissions to gain elevated access through a symlink attack on a file with a predictable name. DIB organizations must ensure all software components, including EoL/EoS tools, are patched or replaced to prevent local privilege escalation that could compromise system integrity and violate CMMC/NIST 800-171 controls. Organizations should transition to supported versions immediately to mitigate this actively exploited vulnerability.
Shame score — The vulnerability was actively exploited in the wild (KEV) and allowed privilege escalation, indicating a significant avoidable risk that was not mitigated by timely patching or proper lifecycle management.
▸ RECOMMENDED ACTION Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.
Red Hat Automatic Bug Reporting Tool (ABRT) contains a privilege escalation vulnerability that could allow local users with certain permissions to gain privileges via a symlink attack on a file with a predictable name. The impacted product(s) could be end-of-life (EoL) and/or end-of-service (EoS). Users are advised to discontinue use and/or transition to a supported version.
| PRODUCT | STATUS |
|---|---|
| Red Hat OpenShift Service on AWS (ROSA) Red Hat |
In Process |