Show plain JSON{"configurations": [{"nodes": [{"cpeMatch": [{"criteria": "cpe:2.3:a:redhat:automatic_bug_reporting_tool:*:*:*:*:*:*:*:*", "matchCriteriaId": "6D19F1BD-9843-432A-B303-1DD3F87CB4B6", "versionEndIncluding": "2.0.9", "vulnerable": true}, {"criteria": "cpe:2.3:a:redhat:automatic_bug_reporting_tool:2.0.0:*:*:*:*:*:*:*", "matchCriteriaId": "C89B966A-5D56-4926-A979-54ECF2DBCFB9", "vulnerable": true}, {"criteria": "cpe:2.3:a:redhat:automatic_bug_reporting_tool:2.0.1:*:*:*:*:*:*:*", "matchCriteriaId": "D37CA6FA-978B-43C6-90D0-5D28CD2F7AA5", "vulnerable": true}, {"criteria": "cpe:2.3:a:redhat:automatic_bug_reporting_tool:2.0.2:*:*:*:*:*:*:*", "matchCriteriaId": "2E7F9FFA-BF4A-4EAA-9807-2AFF279FAD06", "vulnerable": true}, {"criteria": "cpe:2.3:a:redhat:automatic_bug_reporting_tool:2.0.3:*:*:*:*:*:*:*", "matchCriteriaId": "E6A8F7CC-9E5E-4463-9040-252E1A568220", "vulnerable": true}, {"criteria": "cpe:2.3:a:redhat:automatic_bug_reporting_tool:2.0.4:*:*:*:*:*:*:*", "matchCriteriaId": "C9E13C48-AA37-46A7-BD67-FBB242563D44", "vulnerable": true}, {"criteria": "cpe:2.3:a:redhat:automatic_bug_reporting_tool:2.0.4.980:*:*:*:*:*:*:*", "matchCriteriaId": "4C0E251E-F968-4191-80D1-2EC2A0FA128A", "vulnerable": true}, {"criteria": "cpe:2.3:a:redhat:automatic_bug_reporting_tool:2.0.4.981:*:*:*:*:*:*:*", "matchCriteriaId": "BEC26A29-9E64-472F-A3DC-7D62AF55EE3E", "vulnerable": true}, {"criteria": "cpe:2.3:a:redhat:automatic_bug_reporting_tool:2.0.5:*:*:*:*:*:*:*", "matchCriteriaId": "8F8AAB96-7D1E-4F69-8F8F-A8B54C69ED12", "vulnerable": true}, {"criteria": "cpe:2.3:a:redhat:automatic_bug_reporting_tool:2.0.6:*:*:*:*:*:*:*", "matchCriteriaId": "7AB36A8D-176D-4A24-811D-938CE3B90472", "vulnerable": true}, {"criteria": "cpe:2.3:a:redhat:automatic_bug_reporting_tool:2.0.7:*:*:*:*:*:*:*", "matchCriteriaId": "840907BF-0AE0-486D-BABD-7E1443CB8E4B", "vulnerable": true}, {"criteria": "cpe:2.3:a:redhat:automatic_bug_reporting_tool:2.0.8:*:*:*:*:*:*:*", "matchCriteriaId": "7EC0DA15-71FB-4C10-A67A-F4A8A838ADAA", "vulnerable": true}], "negate": false, "operator": "OR"}]}], "cveTags": [], "descriptions": [{"lang": "en", "value": "Untrusted search path vulnerability in plugins/abrt-action-install-debuginfo-to-abrt-cache.c in Automatic Bug Reporting Tool (ABRT) 2.0.9 and earlier allows local users to load and execute arbitrary Python modules by modifying the PYTHONPATH environment variable to reference a malicious Python module."}, {"lang": "es", "value": "Vulnerabilidad de b\u00fasqueda en ruta no confiable en plugins/abrt-action-install-debuginfo-to-abrt-cache.c en Automatic Bug Reporting Tool (ABRT) v2.0.9 y anteriores, permite a usuarios locales cargar y ejecutar m\u00f3dulos Python arbitrariamente modificando la variable de entorno PYTHONPATH para referenciar a un m\u00f3dulo Python malicioso."}], "evaluatorComment": "Per: http://cwe.mitre.org/data/definitions/426.html\r\n\r\n'CWE-426: Untrusted Search Path'\r\n", "id": "CVE-2012-5659", "lastModified": "2025-04-11T00:51:21.963", "metrics": {"cvssMetricV2": [{"acInsufInfo": false, "baseSeverity": "LOW", "cvssData": {"accessComplexity": "HIGH", "accessVector": "LOCAL", "authentication": "NONE", "availabilityImpact": "PARTIAL", "baseScore": 3.7, "confidentialityImpact": "PARTIAL", "integrityImpact": "PARTIAL", "vectorString": "AV:L/AC:H/Au:N/C:P/I:P/A:P", "version": "2.0"}, "exploitabilityScore": 1.9, "impactScore": 6.4, "obtainAllPrivilege": false, "obtainOtherPrivilege": false, "obtainUserPrivilege": false, "source": "nvd@nist.gov", "type": "Primary", "userInteractionRequired": false}]}, "published": "2013-03-12T23:55:01.580", "references": [{"source": "secalert@redhat.com", "tags": ["Exploit", "Patch"], "url": "http://git.fedorahosted.org/cgit/abrt.git/commit/?id=b173d81b577953b96a282167c7eecd66bf111a4f"}, {"source": "secalert@redhat.com", "url": "http://rhn.redhat.com/errata/RHSA-2013-0215.html"}, {"source": "secalert@redhat.com", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=854011"}, {"source": "af854a3a-2127-422b-91ae-364da2661108", "tags": ["Exploit", "Patch"], "url": "http://git.fedorahosted.org/cgit/abrt.git/commit/?id=b173d81b577953b96a282167c7eecd66bf111a4f"}, {"source": "af854a3a-2127-422b-91ae-364da2661108", "url": "http://rhn.redhat.com/errata/RHSA-2013-0215.html"}, {"source": "af854a3a-2127-422b-91ae-364da2661108", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=854011"}], "sourceIdentifier": "secalert@redhat.com", "vulnStatus": "Deferred", "weaknesses": [{"description": [{"lang": "en", "value": "NVD-CWE-Other"}], "source": "nvd@nist.gov", "type": "Primary"}]}