[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248268

 
 

909

 
 

195051

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

ELSA-2015-2505 -- Oracle abrt_libreport

ID: oval:org.secpod.oval:def:1501260Date: (C)2016-02-23   (M)2023-02-20
Class: PATCHFamily: unix




libreport only saves changes to the first file when editing a crash report, which allows remote attackers to obtain sensitive information via unspecified vectors related to the (1) backtrace, (2) cmdline, (3) environ, (4) open_fds, (5) maps, (6) smaps, (7) hostname, (8) remote, (9) ks.cfg, or (10) anaconda-tb file attachment included in a Red Hat Bugzilla bug report.

Platform:
Oracle Linux 7
Product:
abrt
libreport
Reference:
ELSA-2015-2505
CVE-2015-5273
CVE-2015-5287
CVE-2015-5302
CVE    3
CVE-2015-5302
CVE-2015-5273
CVE-2015-5287
CPE    4
cpe:/a:redhat:automatic_bug_reporting_tool:2.7.0
cpe:/a:redhat:automatic_bug_reporting_tool
cpe:/a:libreport:libreport
cpe:/o:oracle:linux:7
...

© SecPod Technologies