CVE-2015-1862
Executive Summary
CVE-2015-1862: The crash reporting component of the Abrt utility contains a flaw that allows a local user to execute code with root privileges. By exploiting an execve call after performing a chroot into a user-specified directory within a namespaced environment, an attacker can elevate privileges. The vulnerability is not currently listed in the CISA KEV database.
Authoritative CVE Metadata - CVSS Base Score: 7.0 (HIGH) - Published: 2018-02-09T22:29:00.520 - Last Modified: 2026-08-26T20:06:00.887
Original Description: The crash reporting feature in Abrt allows local users to gain privileges by leveraging an execve by root after a chroot into a user-specified directory in a namedspaced environment.
"The industrial landscape is already littered with remains of once successful companies that could not adapt their strategic vision to altered conditions of competition."
— Abernathy