Red Hat Bugzilla – Bug 1510921
CVE-2016-5759 kexec-tools: mkdumprd script called "dracut" in the current working directory
Last modified: 2017-11-09 01:34:32 EST
The mkdumprd script called "dracut" in the current working directory "." allows local users to trick the administrator into executing code as root. SUSE bug: https://bugzilla.suse.com/show_bug.cgi?id=990200
Created kexec-tools tracking bugs for this issue: Affects: fedora-all [bug 1510922]
Statement: This issue did not affect the versions of kexec-tools as shipped with Red Hat Enterprise Linux 5, 6, and 7.