CVE-2026-54230

A symlink following vulnerability was found in the ABRT post-create event handler scripts in libreport. Event scripts write output files using shell redirections without the O_NOFOLLOW flag. If the target file is replaced with a symlink, the shell process running as root follows the symlink and writes content to the symlink target, allowing arbitrary file overwrites on the system.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:abrt_project:abrt:*:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:43:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:44:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:8.0:*:*:*:*:*:*:*

History

23 Jul 2026, 09:10

Type Values Removed Values Added
Summary
  • (es) Una vulnerabilidad de seguimiento de enlaces simbólicos fue encontrada en los scripts del gestor de eventos post-creación de ABRT en libreport. Los scripts de eventos escriben archivos de salida usando redirecciones de shell sin la bandera O_NOFOLLOW. Si el archivo objetivo es reemplazado por un enlace simbólico, el proceso de shell ejecutándose como root sigue el enlace simbólico y escribe contenido en el objetivo del enlace simbólico, permitiendo sobrescrituras de archivos arbitrarias en el sistema.

30 Jun 2026, 03:21

Type Values Removed Values Added
References
  • () https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-54230.json -
References () https://access.redhat.com/security/cve/CVE-2026-54230 - Vendor Advisory () https://access.redhat.com/security/cve/CVE-2026-54230 - Vendor Advisory
References () https://bugzilla.redhat.com/show_bug.cgi?id=2488568 - Issue Tracking, Vendor Advisory () https://bugzilla.redhat.com/show_bug.cgi?id=2488568 - Issue Tracking, Vendor Advisory

29 Jun 2026, 17:47

Type Values Removed Values Added
CPE cpe:2.3:o:fedoraproject:fedora:43:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:44:*:*:*:*:*:*:*
First Time Fedoraproject
Fedoraproject fedora

29 Jun 2026, 15:06

Type Values Removed Values Added
References () https://access.redhat.com/security/cve/CVE-2026-54230 - () https://access.redhat.com/security/cve/CVE-2026-54230 - Vendor Advisory
References () https://bugzilla.redhat.com/show_bug.cgi?id=2488568 - () https://bugzilla.redhat.com/show_bug.cgi?id=2488568 - Issue Tracking, Vendor Advisory
CPE cpe:2.3:a:abrt_project:abrt:*:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:8.0:*:*:*:*:*:*:*
First Time Abrt Project abrt
Abrt Project
Redhat enterprise Linux
Redhat

13 Jun 2026, 03:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-06-13 03:16

Updated : 2026-07-23 09:10


NVD link : CVE-2026-54230

Mitre link : CVE-2026-54230

CVE.ORG link : CVE-2026-54230


JSON object : View

Products Affected

abrt_project

  • abrt

fedoraproject

  • fedora

redhat

  • enterprise_linux
CWE
CWE-59

Improper Link Resolution Before File Access ('Link Following')