DSA-5250-1 dbus -- security update

Related Vulnerabilities: CVE-2022-42010   CVE-2022-42011   CVE-2022-42012  

Evgeny Vereshchagin discovered multiple vulnerabilities in D-Bus, a simple interprocess messaging system, which may result in denial of service by an authenticated user. For the stable distribution (bullseye), these problems have been fixed in version 1.12.24-0+deb11u1. We recommend that you upgrade your dbus packages. For the detailed security status of dbus please refer to its security tracker page at: https://security-tracker.debian.org/tracker/dbus

Debian Security Advisory

DSA-5250-1 dbus -- security update

Date Reported:
06 Oct 2022
Affected Packages:
dbus
Vulnerable:
Yes
Security database references:
In the Debian bugtracking system: Bug 1004543, Bug 1005889.
In Mitre's CVE dictionary: CVE-2022-42010, CVE-2022-42011, CVE-2022-42012.
More information:

Evgeny Vereshchagin discovered multiple vulnerabilities in D-Bus, a simple interprocess messaging system, which may result in denial of service by an authenticated user.

For the stable distribution (bullseye), these problems have been fixed in version 1.12.24-0+deb11u1.

We recommend that you upgrade your dbus packages.

For the detailed security status of dbus please refer to its security tracker page at: https://security-tracker.debian.org/tracker/dbus