A symlink following vulnerability was found in the ABRT post-create event handler scripts in libreport. Event scripts write output files using shell redirections without the O_NOFOLLOW flag. If the target file is replaced with a symlink, the shell process running as root follows the symlink and writes content to the symlink target, allowing arbitrary file overwrites on the system.
References
| Link | Resource |
|---|---|
| https://access.redhat.com/errata/RHSA-2026:54272 | |
| https://access.redhat.com/security/cve/CVE-2026-54230 | Vendor Advisory |
| https://bugzilla.redhat.com/show_bug.cgi?id=2488568 | Issue Tracking Vendor Advisory |
| https://access.redhat.com/errata/RHSA-2026:54272 | |
| https://access.redhat.com/security/cve/CVE-2026-54230 | Vendor Advisory |
| https://bugzilla.redhat.com/show_bug.cgi?id=2488568 | Issue Tracking Vendor Advisory |
| https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-54230.json |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2026-06-13 03:16
Updated : 2026-08-26 20:06
NVD link : CVE-2026-54230
Mitre link : CVE-2026-54230
CVE.ORG link : CVE-2026-54230
JSON object : View
Products Affected
redhat
- automatic_bug_reporting_tool
- enterprise_linux
fedoraproject
- fedora
CWE
CWE-59
Improper Link Resolution Before File Access ('Link Following')
