Stack consumption vulnerability in D-Bus (aka DBus) before 1.4.1 allows local users to cause a denial of service (daemon crash) via a message containing many nested variants.
CVSS Details
- CVSS 3.1 Base Score: 3.3
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Centos_linux | — | Upgrade dbusUpgrade dbus-x11Upgrade dbus-libsUpgrade dbus-devel | Dec 1, 2016 | Dec 30, 2010 |
| Debian | — | Upgrade dbus | Jul 30, 2024 | Dec 30, 2010 |
| Gentoo Linux | — | Upgrade sys-apps/dbus. | Oct 30, 2017 | Dec 30, 2010 |
| Oracle_linux | — | Upgrade dbusUpgrade dbus-x11Upgrade dbus-docUpgrade dbus-libsUpgrade dbus-devel | Oct 16, 2024 | Dec 30, 2010 |
| Suse | — | Upgrade dbus-1-commonUpgrade libdbus-1-3-32bitUpgrade dbus-1-devel-docUpgrade dbus-1-daemonUpgrade dbus-1-x11Upgrade dbus-1-x86Upgrade dbus-1-develUpgrade libdbus-1-3Upgrade dbus-1Upgrade dbus-1-32bitUpgrade dbus-1-tools | Feb 17, 2015 | Jun 28, 2013 |
| Ubuntu | — | Upgrade libdbus-1-3 | Nov 8, 2024 | Dec 30, 2010 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub