A race condition was found in the way abrt handled the directories used to store information about crashes. A local attacker with the privileges of the abrt user could use this flaw to perform a symbolic link attack, allowing them to make any file writable by the abrt user, allowing them to escalate their privileges to the privileged system user account, root.
This issue was assigned CVE-2012-5660.
Acknowledgements:
Red Hat would like to thank Martin Carpenter of Citco for reporting this issue.