LWN.net Logo

dbus: denial of service

Package(s):dbus CVE #(s):CVE-2013-2168
Created:June 13, 2013 Updated:August 23, 2013
Description:

From the Debian announcement:

Alexandru Cornea discovered a vulnerability in libdbus caused by an implementation bug in _dbus_printf_string_upper_bound(). This vulnerability can be exploited by a local user to crash system services that use libdbus, causing denial of service. Depending on the dbus services running, it could lead to complete system crash.

Alerts:
Debian DSA-2707-1 2013-06-13
Ubuntu USN-1874-1 2013-06-13
Mageia MGASA-2013-0173 2013-06-18
Mandriva MDVSA-2013:177 2013-06-25
Fedora FEDORA-2013-11198 2013-06-27
openSUSE openSUSE-SU-2013:1118-1 2013-07-02
Slackware SSA:2013-191-01 2013-07-10
Gentoo 201308-02 2013-08-22

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds