[Forgot Password]
Login  Register Subscribe

30480

 
 

423868

 
 

252588

 
 

909

 
 

196930

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

ALAS2023-2023-100 --- dbus

ID: oval:org.secpod.oval:def:19500123Date: (C)2023-06-12   (M)2024-01-02
Class: PATCHFamily: unix




An issue was discovered in D-Bus before 1.12.24, 1.13.x and 1.14.x before 1.14.4, and 1.15.x before 1.15.2. An authenticated attacker can cause dbus-daemon and other programs that use libdbus to crash when receiving a message with certain invalid type signatures. An issue was discovered in D-Bus before 1.12.24, 1.13.x and 1.14.x before 1.14.4, and 1.15.x before 1.15.2. An authenticated attacker can cause dbus-daemon and other programs that use libdbus to crash when receiving a message where an array length is inconsistent with the size of the element type. An issue was discovered in D-Bus before 1.12.24, 1.13.x and 1.14.x before 1.14.4, and 1.15.x before 1.15.2. An authenticated attacker can cause dbus-daemon and other programs that use libdbus to crash by sending a message with attached file descriptors in an unexpected format

Platform:
Amazon Linux 2023
Product:
dbus
Reference:
ALAS2023-2023-100
CVE-2022-42010
CVE-2022-42011
CVE-2022-42012
CVE    3
CVE-2022-42011
CVE-2022-42012
CVE-2022-42010
CPE    1
cpe:/a:freedesktop:dbus

© SecPod Technologies