CVE-2015-3315: Red Hat Automatic Bug Reporting Tool

High severity, CVSS 7.8. EPSS: 4.8% chance of exploitation in the next 30 days.

Automatic Bug Reporting Tool (ABRT) allows local users to read, change the ownership of, or have other unspecified impact on arbitrary files via a symlink attack on (1) /var/tmp/abrt/*/maps, (2) /tmp/jvm-*/hs_error.log, (3) /proc/*/exe, (4) /etc/os-release in a chroot, or (5) an unspecified root directory related to librpm.

Affected products

  • Red Hat Automatic Bug Reporting Tool: affected versions not specified

Published 2017-06-26. Last modified 2026-06-17.