Lucene search

K
ubuntuUbuntuUSN-1044-1
HistoryJan 18, 2011 - 12:00 a.m.

D-Bus vulnerability

2011-01-1800:00:00
ubuntu.com
40

CVSS2

2.1

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:N/I:N/A:P

AI Score

5.9

Confidence

Low

EPSS

0

Percentile

10.1%

Releases

  • Ubuntu 10.10
  • Ubuntu 10.04
  • Ubuntu 9.10
  • Ubuntu 8.04

Packages

  • dbus - simple interprocess messaging system

Details

Remi Denis-Courmont discovered that D-Bus did not properly validate the
number of nested variants when validating D-Bus messages. A local attacker
could exploit this to cause a denial of service.

OSVersionArchitecturePackageVersionFilename
Ubuntu9.10noarchlibdbus-1-3< 1.2.16-0ubuntu9.1UNKNOWN
Ubuntu9.10noarchdbus< 1.2.16-0ubuntu9.1UNKNOWN
Ubuntu9.10noarchdbus-x11< 1.2.16-0ubuntu9.1UNKNOWN
Ubuntu9.10noarchlibdbus-1-dev< 1.2.16-0ubuntu9.1UNKNOWN
Ubuntu8.04noarchlibdbus-1-3< 1.1.20-1ubuntu3.4UNKNOWN
Ubuntu8.04noarchdbus< 1.1.20-1ubuntu3.4UNKNOWN
Ubuntu8.04noarchdbus-x11< 1.1.20-1ubuntu3.4UNKNOWN
Ubuntu8.04noarchlibdbus-1-dev< 1.1.20-1ubuntu3.4UNKNOWN
Ubuntu10.10noarchlibdbus-1-3< 1.4.0-0ubuntu1.1UNKNOWN
Ubuntu10.10noarchdbus< 1.4.0-0ubuntu1.1UNKNOWN
Rows per page:
1-10 of 171

CVSS2

2.1

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:N/I:N/A:P

AI Score

5.9

Confidence

Low

EPSS

0

Percentile

10.1%