{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","feed_url":"https://feed.craftedsignal.io/products/abrt/feed.json","home_page_url":"https://feed.craftedsignal.io/","items":[{"_cs_actors":[],"_cs_cpes":[],"_cs_cves":[],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["Enterprise Linux","abrt"],"_cs_severities":["medium"],"_cs_tags":[],"_cs_type":"advisory","_cs_vendors":["Red Hat"],"content_html":"\u003cp\u003eThe Automatic Bug Reporting Tool (abrt) in Red Hat Enterprise Linux contains multiple vulnerabilities that enable local attackers to exploit the system's error reporting mechanisms. These flaws allow unprivileged users to bypass existing security controls, manipulate sensitive crash data, or intentionally cause a denial-of-service (DoS) condition by destabilizing the abrt daemon. Because abrt runs with elevated privileges to collect system-wide crash information, successfully exploiting these flaws can lead to unauthorized access or system instability. Organizations running Red Hat Enterprise Linux environments should prioritize updating the abrt packages to the latest vendor-provided versions to mitigate these local privilege escalation and integrity risks.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eSuccessful exploitation of these vulnerabilities allows local users to gain elevated privileges, corrupt crash reporting logs, or crash system services. This impacts the integrity and availability of the affected Red Hat Enterprise Linux systems. While these vulnerabilities require local access, they pose a significant threat in multi-user environments, shared hosting, or environments where non-privileged users have access to the local console or terminal.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cp\u003ePrioritize the deployment of security patches released by Red Hat for the abrt component. Use configuration management tools to audit the version of abrt installed across the enterprise fleet and ensure that all nodes are updated to the vendor-specified patched version to remediate the identified local security risks.\u003c/p\u003e\n","date_modified":"2026-07-31T09:28:18Z","date_published":"2026-07-31T09:28:18Z","id":"https://feed.craftedsignal.io/briefs/2026-07-red-hat-abrt-vulnerabilities/","summary":"Multiple vulnerabilities in the Automatic Bug Reporting Tool (abrt) within Red Hat Enterprise Linux allow a local attacker to perform privilege escalation, manipulate data, or trigger a denial-of-service condition.","title":"Multiple Vulnerabilities in Red Hat Enterprise Linux ABRT","url":"https://feed.craftedsignal.io/briefs/2026-07-red-hat-abrt-vulnerabilities/"}],"language":"en","title":"CraftedSignal Threat Feed - Abrt","version":"https://jsonfeed.org/version/1.1"}