MGASA-2014-0266

Source
https://advisories.mageia.org/MGASA-2014-0266.html
Import Source
https://advisories.mageia.org/MGASA-2014-0266.json
JSON Data
https://api.osv.dev/v1/vulns/MGASA-2014-0266
Related
Published
2014-06-18T19:25:42Z
Modified
2014-06-18T19:25:34Z
Summary
Updated dbus packages fix security vulnerability
Details

Updated dbus packages fix security vulnerability:

A denial of service vulnerability in D-Bus before 1.6.20 allows a local attacker to cause a bus-activated service that is not currently running to attempt to start, and fail, denying other users access to this service Additionally, in highly unusual environments the same flaw could lead to a side channel between processes that should not be able to communicate (CVE-2014-3477).

References
Credits

Affected packages

Mageia:3 / dbus

Package

Name
dbus
Purl
pkg:rpm/mageia/dbus?distro=mageia-3

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.6.8-4.2.mga3

Ecosystem specific

{
    "section": "core"
}

Mageia:4 / dbus

Package

Name
dbus
Purl
pkg:rpm/mageia/dbus?distro=mageia-4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.6.18-1.1.mga4

Ecosystem specific

{
    "section": "core"
}