CVE-2026-54231

A content injection vulnerability was found in the ABRT post-create event handler scripts in libreport. The event script queries the systemd journal for log entries matching the crashed process and writes the results to files in the dump directory without sanitizing embedded control characters. A local user can inject arbitrary content into the journal output by embedding newline characters in syslog messages, controlling the content that root writes to dump directory files.
References
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:abrt_project:abrt:*:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:43:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:44:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:8.0:*:*:*:*:*:*:*

History

23 Jul 2026, 09:10

Type Values Removed Values Added
Summary
  • (es) Se encontró una vulnerabilidad de inyección de contenido en los scripts del gestor de eventos post-creación de ABRT en libreport. El script de evento consulta el registro de systemd en busca de entradas de registro que coincidan con el proceso bloqueado y escribe los resultados en archivos en el directorio de volcado sin sanear los caracteres de control incrustados. Un usuario local puede inyectar contenido arbitrario en la salida del registro incrustando caracteres de nueva línea en los mensajes de syslog, controlando el contenido que root escribe en los archivos del directorio de volcado.

29 Jun 2026, 17:48

Type Values Removed Values Added
First Time Fedoraproject
Fedoraproject fedora
CPE cpe:2.3:o:fedoraproject:fedora:43:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:44:*:*:*:*:*:*:*

29 Jun 2026, 15:07

Type Values Removed Values Added
CPE cpe:2.3:a:abrt_project:abrt:*:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:8.0:*:*:*:*:*:*:*
First Time Abrt Project abrt
Abrt Project
Redhat enterprise Linux
Redhat
References () https://access.redhat.com/security/cve/CVE-2026-54231 - () https://access.redhat.com/security/cve/CVE-2026-54231 - Vendor Advisory
References () https://bugzilla.redhat.com/show_bug.cgi?id=2488571 - () https://bugzilla.redhat.com/show_bug.cgi?id=2488571 - Issue Tracking, Vendor Advisory

13 Jun 2026, 03:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-06-13 03:16

Updated : 2026-07-23 09:10


NVD link : CVE-2026-54231

Mitre link : CVE-2026-54231

CVE.ORG link : CVE-2026-54231


JSON object : View

Products Affected

abrt_project

  • abrt

fedoraproject

  • fedora

redhat

  • enterprise_linux
CWE
CWE-74

Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')