The crash reporting feature in Abrt allows local users to gain privileges by leveraging an execve by root after a chroot into a user-specified directory in a namedspaced environment.
2018-02-09T22:29:00.520
2024-11-21T02:26:17.460
Modified
CVSSv3.0: 7.0 (HIGH)
AV:L/AC:M/Au:N/C:C/I:C/A:C
3.4
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | abrt_project | abrt | ≤ 2.2.0 | Yes |