Vulnerability CVE-2015-0245: Information
Description
D-Bus 1.4.x through 1.6.x before 1.6.30, 1.8.x before 1.8.16, and 1.9.x before 1.9.10 does not validate the source of ActivationFailure signals, which allows local users to cause a denial of service (activation failure error returned) by leveraging a race condition involving sending an ActivationFailure signal before systemd responds.
Severity: LOW (1.9)
Fixed packages
Package name | Branch | Fixed in version | Version from repository | Errata ID | Task # | State |
---|---|---|---|---|---|---|
dbus | sisyphus | 1.8.16-alt1 | 1.14.10-alt1 | ALT-PU-2015-1176-1 | 140528 | Fixed |
dbus | p10 | 1.8.16-alt1 | 1.14.10-alt1 | ALT-PU-2015-1176-1 | 140528 | Fixed |
dbus | p9 | 1.8.16-alt1 | 1.12.16-alt2 | ALT-PU-2015-1176-1 | 140528 | Fixed |
dbus | c10f1 | 1.8.16-alt1 | 1.14.8-alt1 | ALT-PU-2015-1176-1 | 140528 | Fixed |
dbus | c9f2 | 1.8.16-alt1 | 1.12.16-alt2.c9f2.1 | ALT-PU-2015-1176-1 | 140528 | Fixed |
dbus | c7 | 1.6.30-alt1.M70C.1 | 1.6.30-alt1.M70C.2 | ALT-PU-2015-2059-1 | 154197 | Fixed |