Oval Definition:oval:org.opensuse.security:def:78074
Revision Date:2014-12-23Version:1
Title:Security update for dbus-1 (Moderate)
Description:

dbus-1 was updated to version 1.8.12 to fix one security issue.

This security issue was fixed: - Increase dbus-daemons RLIMIT_NOFILE rlimit to 65536 to stop an attacker from exhausting the file descriptors of the system bus (CVE-2014-7824).

Note: This already includes the fix for the regression that was introduced by the first fix for CVE-2014-7824 in 1.8.10.

On fast systems where local users are considered particularly hostile, administrators can return to the 5 second timeout (or any other value in milliseconds) by saving this as /etc/dbus-1/system-local.conf: 5000
Family:unixClass:patch
Status:Reference(s):904017
CVE-2014-3636
CVE-2014-7824
Platform(s):SUSE Linux Enterprise Desktop 12
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 is installed
  • AND Package Information
  • dbus-1-1.8.12-6.5 is installed
  • OR dbus-1-x11-1.8.12-6.5 is installed
  • OR libdbus-1-3-1.8.12-6.1 is installed
  • OR libdbus-1-3-32bit-1.8.12-6.1 is installed
  • BACK