abrt-dbus是ABRT组织开源的一个提供故障报告数据管理和查询功能的D-Bus后台服务。 abrt-dbus存在竞争条件问题漏洞,该漏洞源于D-Bus服务SetElement方法存在检查时间与使用时间竞争条件。在转储目录创建与post-create事件执行之间的时间窗口内,本地用户可调用SetElement向root权限拥有的转储目录写入任意文本文件,绕过软件包验证机制,导致未打包二进制程序的崩溃转储数据在post-create处理后仍被保留。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Red Hat | Red Hat Enterprise Linux 6 | any |
unknown |
| Red Hat | Red Hat Enterprise Linux 7 Extended Lifecycle Support | 0:2.1.11-61.el7_9< * |
unaffected |
| Red Hat | Red Hat Enterprise Linux 8 | 0:2.10.9-26.el8_10< * |
unaffected |
| Red Hat | Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support | 0:2.10.9-25.el8_4.1< * |
unaffected |
| Red Hat | Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On | 0:2.10.9-25.el8_4.1< * |
unaffected |
| Red Hat | Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support | 0:2.10.9-25.el8_6.1< * |
unaffected |
| Red Hat | Red Hat Enterprise Linux 8.6 Extended Update Support Long-Life Add-On | 0:2.10.9-25.el8_6.1< * |
unaffected |
| Red Hat | Red Hat Enterprise Linux 8.8 Telecommunications Update Service | 0:2.10.9-25.el8_8.1< * |
unaffected |
| Red Hat | Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions | 0:2.10.9-25.el8_8.1< * |
unaffected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Red Hat | Red Hat Enterprise Linux 7 Extended Lifecycle Support | 0:2.1.11-61.el7_9 ~ * |
cpe:/o:redhat:rhel_els:7
|
|
| Red Hat | Red Hat Enterprise Linux 8 | 0:2.10.9-26.el8_10 ~ * |
cpe:/a:redhat:enterprise_linux:8::appstream
|
|
| Red Hat | Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support | 0:2.10.9-25.el8_4.1 ~ * |
cpe:/a:redhat:rhel_aus:8.4::appstream
|
|
| Red Hat | Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On | 0:2.10.9-25.el8_4.1 ~ * |
cpe:/a:redhat:rhel_aus:8.4::appstream
|
|
| Red Hat | Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support | 0:2.10.9-25.el8_6.1 ~ * |
cpe:/a:redhat:rhel_aus:8.6::appstream
|
|
| Red Hat | Red Hat Enterprise Linux 8.6 Extended Update Support Long-Life Add-On | 0:2.10.9-25.el8_6.1 ~ * |
cpe:/a:redhat:rhel_aus:8.6::appstream
|
|
| Red Hat | Red Hat Enterprise Linux 8.8 Telecommunications Update Service | 0:2.10.9-25.el8_8.1 ~ * |
cpe:/a:redhat:rhel_e4s:8.8::appstream
|
|
| Red Hat | Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions | 0:2.10.9-25.el8_8.1 ~ * |
cpe:/a:redhat:rhel_e4s:8.8::appstream
|
|
| Red Hat | Red Hat Enterprise Linux 6 | - |
cpe:/o:redhat:enterprise_linux:6
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-54230 | 7.0 HIGH | Abrt: event handler scripts follow symlinks when writing output files, allowing arbitrary |
| CVE-2026-54229 | 7.0 HIGH | Abrt: chownproblemdir succeeds during active post-create event processing due to inadequat |
| CVE-2026-54231 | 5.5 MEDIUM | Abrt: unsanitized systemd journal content written to dump directory files enables content |
No comments yet