It was discovered that the kernel-invoked coredump processor provided by abrt writes core dumps to files owned by other system users. This could result in information disclosure if an application crashes while its current directory is a directory writable to other users (such as /tmp).
Acknowledgement:
This issue was discovered by Florian Weimer of Red Hat Product Security.