MGASA-2014-0294

Source
https://advisories.mageia.org/MGASA-2014-0294.html
Import Source
https://advisories.mageia.org/MGASA-2014-0294.json
JSON Data
https://api.osv.dev/v1/vulns/MGASA-2014-0294
Related
Published
2014-07-26T11:48:47Z
Modified
2014-07-26T11:48:33Z
Summary
Updated dbus packages fix multiple vulnerabilities
Details

Updated dbus packages fix security vulnerabilities:

A flaw was reported in D-Bus's file descriptor passing feature. A local attacker could use this flaw to cause a service or application to disconnect from the bus, typically resulting in that service or application exiting (CVE-2014-3532).

A flaw was reported in D-Bus's file descriptor passing feature. A local attacker could use this flaw to cause an invalid file descriptor to be forwarded to a service or application, causing it to disconnect from the bus, typically resulting in that service or application exiting (CVE-2014-3533).

References
Credits

Affected packages

Mageia:3 / dbus

Package

Name
dbus
Purl
pkg:rpm/mageia/dbus?distro=mageia-3

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.6.8-4.4.mga3

Ecosystem specific

{
    "section": "core"
}

Mageia:4 / dbus

Package

Name
dbus
Purl
pkg:rpm/mageia/dbus?distro=mageia-4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.6.18-1.3.mga4

Ecosystem specific

{
    "section": "core"
}