7.2
CVSSv2

CVE-2015-3159

Published: 14/01/2020 Updated: 13/02/2023
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Impact: Important Public Date: 2015-04-29 CWE: CWE-20 Bugzilla: 1216962: CVE-2015-3159 abrt: missing process environment sanitizaton in abrt-action-install-debuginfo-to-abrt-cache It exists that the abrt-action-install-debuginfo-to-abrt-cache helper program did not properly filter the process environment before invoking abrt-action-install-debuginfo. A local attacker could use this flaw to escalate their privileges on the system.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

redhat automatic bug reporting tool -

Vendor Advisories

Impact: Important Public Date: 2015-04-29 CWE: CWE-20 Bugzilla: 1216962: CVE-2015-3159 abrt: missing pr ...