www.cisa.gov 8/27/2026, 2:51:58 AM · external

CVE-2015-5287 Flaw in Red Hat ABRT Enables Privilege Escalation

Developing story incident 2 articles tracked
CISA adds Red Hat ABRT privilege escalation flaw (CVE-2015-5287) to KEV catalogue
CyberSIXT Evidence Panel
Primary Source nvd.nist.gov
CISA KEV Listed in KEV
Patch Patch Available

THE CISA maintains a **Known Exploited Vulnerabilities (KEV) Catalog** to support organizations in managing cybersecurity threats. The catalog lists vulnerabilities actively exploited in the wild, serving as a critical resource for vulnerability management prioritization. Before using the catalog, users are encouraged to learn more about its application. The catalog also allows users to nominate previously unlisted vulnerabilities.

Currently, it features a notable vulnerability: **CVE-2015-5287**, which affects the Red Hat Automatic Bug Reporting Tool, enabling privilege escalation via a symlink attack. Users are urged to discontinue using old or unsupported versions and follow vendor instructions for mitigation while adhering to CISA’s guidance on prioritizing security updates.

View Primary Source Via www.cisa.gov

Article by CyberSIXT

Timeline Coverage

Swipe to explore timeline