Related Vulnerabilities: CVE-2019-25058  

An issue was discovered in USBGuard before 1.1.0. On systems with the usbguard-dbus daemon running, an unprivileged user could make USBGuard allow all USB devices to be connected in the future.

Description

The MITRE CVE dictionary describes this issue as:

An issue was discovered in USBGuard before 1.1.0. On systems with the usbguard-dbus daemon running, an unprivileged user could make USBGuard allow all USB devices to be connected in the future.

Additional Information

  • Bugzilla 2058465: CVE-2019-25058 usbguard: Fix unauthorized access via D-Bus
  • CWE-863: Incorrect Authorization
  • FAQ: Frequently asked questions about CVE-2019-25058