Oval Definition:oval:org.cisecurity:def:120
Revision Date:2016-02-08Version:2
Title:DSA-3161-1 -- dbus -- security update
Description:Simon McVittie discovered a local denial of service flaw in dbus, an asynchronous inter-process communication system. On systems with systemd-style service activation, dbus-daemon does not prevent forged ActivationFailure messages from non-root processes. A malicious local user could use this flaw to trick dbus-daemon into thinking that systemd failed to activate a system service, resulting in an error reply back to the requester.
Family:unixClass:patch
Status:ACCEPTEDReference(s):CVE-2015-0245
DSA-3161-1
Platform(s):Debian GNU/kFreeBSD 7.0
Debian GNU/Linux 7.0
Product(s):dbus
Definition Synopsis
  • Debian 7 is installed
  • AND GNU/Linux or GNU/kFreeBSD kernel
  • Debian GNU/Linux is installed
  • OR Debian GNU/kFreeBSD is installed
  • AND dbus is earlier than 0:1.6.8-1+deb7u6
  • BACK