CVE-2012-5659: Red Hat Automatic Bug Reporting Tool

Low severity, CVSS 3.7. EPSS: 0.4% chance of exploitation in the next 30 days.

Untrusted search path vulnerability in plugins/abrt-action-install-debuginfo-to-abrt-cache.c in Automatic Bug Reporting Tool (ABRT) 2.0.9 and earlier allows local users to load and execute arbitrary Python modules by modifying the PYTHONPATH environment variable to reference a malicious Python module.

Affected products

  • Red Hat Automatic Bug Reporting Tool: up to and including 2.0.9; version 2.0.0 only; version 2.0.1 only; version 2.0.2 only; version 2.0.3 only; version 2.0.4 only; …

Published 2013-03-12. Last modified 2026-06-16.