LWN.net Logo

dbus: security bypass

Package(s):dbus CVE #(s):CVE-2008-4311
Created:December 8, 2008 Updated:April 21, 2009
Description:

From the freedesktop.org advisory

Joachim Breitner discovered a mistake in the default configuration for the system bus (system.conf) which made the default policy for both sent and received messages effectively *allow*, and not deny as intended.

Alerts:
SuSE SUSE-SR:2009:009 2009-04-21
SuSE SUSE-SA:2009:013 2009-03-17
Fedora FEDORA-2008-10733 2008-12-07
Fedora FEDORA-2008-10907 2008-12-07
openSUSE openSUSE-SU-2012:1418-1 2012-10-31

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds