CVE-2015-0245
Description
D-Bus 1.4.x through 1.6.x before 1.6.30, 1.8.x before 1.8.16, and 1.9.x before 1.9.10 does not validate the source of ActivationFailure signals, which allows local users to cause a denial of service (activation failure error returned) by leveraging a race condition involving sending an ActivationFailure signal before systemd responds.
Risk Information
Base Score
7.5
MODERATE
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
EPSS Score
Exploitation Probability
0.092
Associated Vulnerability
| Vulnerability | OS Platform |
|---|---|
| simple interprocess messaging system (USN-2275-1) dbus_1.6.18-0ubuntu4.4_i386.deb | Linux |
| simple interprocess messaging system (USN-2275-1) dbus_1.6.18-0ubuntu4.4_amd64.deb | Linux |
| simple interprocess messaging system (USN-2275-1) libdbus-1-3_1.6.18-0ubuntu4.4_i386.deb | Linux |
| simple interprocess messaging system (USN-2275-1) libdbus-1-3_1.6.18-0ubuntu4.4_amd64.deb | Linux |
| SUSE-SU-2015:0457-1(SUSE Linux Enterprise Desktop 12 ) dbus-1-1.8.16-14.1.x86_64.rpm | Linux |
| SUSE-SU-2015:0457-1(SUSE Linux Enterprise Desktop 12 ) dbus-1-debuginfo-1.8.16-14.1.x86_64.rpm | Linux |
| SUSE-SU-2015:0457-1(SUSE Linux Enterprise Desktop 12 ) dbus-1-debugsource-1.8.16-14.1.x86_64.rpm | Linux |
| SUSE-SU-2015:0457-1(SUSE Linux Enterprise Desktop 12 ) dbus-1-x11-1.8.16-14.1.x86_64.rpm | Linux |
| SUSE-SU-2015:0457-1(SUSE Linux Enterprise Desktop 12 ) dbus-1-x11-debuginfo-1.8.16-14.1.x86_64.rpm | Linux |
| SUSE-SU-2015:0457-1(SUSE Linux Enterprise Desktop 12 ) dbus-1-x11-debugsource-1.8.16-14.1.x86_64.rpm | Linux |
| SUSE-SU-2015:0457-1(SUSE Linux Enterprise Desktop 12 ) libdbus-1-3-1.8.16-14.1.x86_64.rpm | Linux |
| SUSE-SU-2015:0457-1(SUSE Linux Enterprise Desktop 12 ) libdbus-1-3-32bit-1.8.16-14.1.x86_64.rpm | Linux |
| SUSE-SU-2015:0457-1(SUSE Linux Enterprise Desktop 12 ) libdbus-1-3-debuginfo-1.8.16-14.1.x86_64.rpm | Linux |
| SUSE-SU-2015:0457-1(SUSE Linux Enterprise Desktop 12 ) libdbus-1-3-debuginfo-32bit-1.8.16-14.1.x86_64.rpm | Linux |
Patch Details
No records foundReferences
https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234