2.1
CVSSv2

CVE-2005-0201

Published: 29/06/2005 Updated: 03/10/2018
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
VMScore: 187
Vector: AV:L/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

D-BUS (dbus) prior to 0.22 does not properly restrict access to a socket, if the socket address is known, which allows local users to listen or send arbitrary messages on another user's per-user session bus via that socket.

Vulnerable Product Search on Vulmon Subscribe to Product

d-bus d-bus

Vendor Advisories

Synopsis dbus security update Type/Severity Security Advisory: Low Topic Updated dbus packages that fix a security issue are now available forRed Hat Enterprise Linux 4This update has been rated as having low security impact by the Red HatSecurity Response Team Description D-BUS is a sys ...
Besides providing the global system-wide communication bus, dbus also offers per-user “session” buses which applications in an user’s session can create and use to communicate with each other Daniel Reed discovered that the default configuration of the session dbus allowed a local user to connect to another user’s session bus if its addre ...