CVE-2012-5659: Low severity redhat Automatic Bug Reporting Tool vulnerability
An insufficient environment sanitization flaw was found in the way 'abrt-action-install-debuginfo-to-abrt-cache' tool, performing installation of required debuginfo packages into ABRT's cache, of ABRT, an automatic bug detection and reporting tool, used the PYTHONPATH environment variable. A local attacker could provide a commonly used Python module with specially-crafted content in non-standard system location / path, which would lead into arbitrary Python code execution with privileges of the 'abrt' user, when the 'abrt-action-install-debuginfo-to-abrt-cache' tool was run from the parent directory of the folder, containing the malicious module.
Issue found by: Miloslav Trmač of Red Hat
Other sources
Untrusted search path vulnerability in plugins/abrt-action-install-debuginfo-to-abrt-cache.c in Automatic Bug Reporting Tool (ABRT) 2.0.9 and earlier allows local users to load and execute arbitrary Python modules by modifying the PYTHONPATH environment variable to reference a malicious Python module.
— MITRE
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2012-5659?
CVE-2012-5659 has a medium severity rating due to its potential impact on local users.
How do I fix CVE-2012-5659?
To fix CVE-2012-5659, upgrade to ABRT version 2.0.14 or later.
Which versions of ABRT are affected by CVE-2012-5659?
CVE-2012-5659 affects ABRT versions up to and including 2.0.13.
What is the nature of the vulnerability in CVE-2012-5659?
CVE-2012-5659 is an insufficient environment sanitization flaw affecting how debuginfo packages are installed.
Who is affected by CVE-2012-5659?
Local users on systems running vulnerable versions of ABRT are affected by CVE-2012-5659.