FreeBSD : dbus -- local DoS (52bbc7e8-f13c-11e3-bc09-bcaec565249c)

low Nessus Plugin ID 76060

Synopsis

The remote FreeBSD host is missing one or more security-related updates.

Description

Simon MvVittie reports :

Alban Crequy at Collabora Ltd. discovered and fixed a denial-of-service flaw in dbus-daemon, part of the reference implementation of D-Bus. Additionally, in highly unusual environments the same flaw could lead to a side channel between processes that should not be able to communicate.

Solution

Update the affected packages.

See Also

https://lists.freedesktop.org/archives/dbus/2014-June/016220.html

http://www.nessus.org/u?24a26bc1

Plugin Details

Severity: Low

ID: 76060

File Name: freebsd_pkg_52bbc7e8f13c11e3bc09bcaec565249c.nasl

Version: 1.6

Type: local

Published: 6/16/2014

Updated: 1/6/2021

Supported Sensors: Nessus

Risk Information

VPR

Risk Factor: Low

Score: 3.6

CVSS v2

Risk Factor: Low

Base Score: 2.1

Vector: CVSS2#AV:L/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Information

CPE: p-cpe:/a:freebsd:freebsd:dbus, cpe:/o:freebsd:freebsd

Required KB Items: Host/local_checks_enabled, Host/FreeBSD/release, Host/FreeBSD/pkg_info

Patch Publication Date: 6/14/2014

Vulnerability Publication Date: 6/10/2014

Reference Information

CVE: CVE-2014-3477