CVE-2014-3532
Publication date 2 July 2014
Last updated 24 July 2024
Ubuntu priority
dbus 1.3.0 before 1.6.22 and 1.8.x before 1.8.6, when running on Linux 2.6.37-rc4 or later, allows local users to cause a denial of service (system-bus disconnect of other services or applications) by sending a message containing a file descriptor, then exceeding the maximum recursion depth before the initial message is forwarded.
Status
Package | Ubuntu Release | Status |
---|---|---|
dbus | 14.04 LTS trusty |
Fixed 1.6.18-0ubuntu4.1
|
Notes
References
Related Ubuntu Security Notices (USN)
- USN-2275-1
- DBus vulnerabilities
- 8 July 2014