Oval Definition:oval:org.mitre.oval:def:22397
Revision Date:2014-05-26Version:13
Title:ELSA-2008:0159: dbus security update (Moderate)
Description:dbus-daemon in D-Bus before 1.0.3, and 1.1.x before 1.1.20, recognizes send_interface attributes in allow directives in the security policy only for fully qualified method calls, which allows local users to bypass intended access restrictions via a method call with a NULL interface.
Family:unixClass:patch
Status:ACCEPTEDReference(s):CVE-2008-0595
ELSA-2008:0159-01
Platform(s):Oracle Linux 5
Product(s):dbus
Definition Synopsis
  • Oracle Linux 5.x
  • AND rpm test
  • dbus-x11 is earlier than 0:1.0.0-6.3.el5_1
  • OR dbus-devel is earlier than 0:1.0.0-6.3.el5_1
  • OR dbus is earlier than 0:1.0.0-6.3.el5_1
  • BACK