CVE-2015-3315 describes a local privilege escalation vulnerability in the Automatic Bug Reporting Tool (ABRT) affecting various Red Hat Enterprise Linux products. This flaw allows a local attacker to perform a symlink attack on specific files and directories, leading to arbitrary file reading, ownership changes, or other unspecified impacts. With a CVSSv3 score of 7.8 (High), the vulnerability has a low attack complexity and requires local access, but can result in high confidentiality, integrity, and availability impacts. Exploit code is publicly available, including a Metasploit module, though there is no evidence of active exploitation in the wild and minimal community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:a:redhat:automatic_bug_reporting_tool:-:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.