๐ฅ This vulnerability is being actively exploited in the wild (CISA Known Exploited Vulnerabilities catalog)
CVE-2015-5287: Red Hat Automatic Bug Reporting Tool Privilege Escalation Vulnerability
Summary
Red Hat Automatic Bug Reporting Tool (ABRT) has a privilege escalation vulnerability that lets local users with certain permissions gain higher-level access through a symlink attack (creating a fake link to a predictable file). This vulnerability is actively being exploited in real-world attacks, and the affected software versions are no longer supported by Red Hat.
Solution / Mitigation
Apply mitigations according to vendor instructions, following CISA's BOD 26-04 guidance on prioritizing security updates. If mitigations are unavailable, discontinue use of the product. Organizations should evaluate their exposure to the internet and ensure they meet BOD 26-04 patching requirements by the due date of 2026-09-09.
Vulnerability Details
EPSS: 3.4%
Yes
๐ฅ Actively Exploited
August 25, 2026
Classification
Original source: https://nvd.nist.gov/vuln/detail/CVE-2015-5287
First tracked: August 26, 2026 at 02:01 PM
Classified by LLM (prompt v3) ยท confidence: 95%