Status: UPDATED
| Advisory ID: CVE-2026-54230
Key Details
| CVE | CVE-2026-54230 |
| CVSS Score / Version | 7.0 (High) / CVSS v3.1 |
| Updated | 2026-09-21 |
| CVSS Vector | CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H |
| CVSS Prose | attack vector is local; attack complexity is high; privileges required is low; user interaction is none; scope is unchanged; confidentiality impact is high; integrity impact is high; availability impact is high. |
| Affected products | see table below |
| Classified as | CWE-59 (Improper Link Resolution Before File Access ('Link Following')) |
Affected Products, Subsystems & Sectors
| Subsystems | EWS Workstation Delivery/Virtualization |
| Sectors | All Sectors |
What to Know
A symlink following vulnerability was found in the ABRT post-create event handler scripts in libreport. Event scripts write output files using shell redirections without the O_NOFOLLOW flag. If the target file is replaced with a symlink, the shell process running as root follows the symlink and writes content to the symlink target, allowing arbitrary file overwrites on the system. (NVD)
What to Do
Monitor Red Hat's web page for any future patch releases. See vendor advisory link below.
References