Scientific Linux Security Update : dbus on SL5.x, SL6.x i386/x86_64
Low Nessus Plugin ID 60992
SynopsisThe remote Scientific Linux host is missing one or more security updates.
DescriptionA denial of service flaw was discovered in the system for sending messages between applications. A local user could send a message with an excessive number of nested variants to the system-wide message bus, causing the message bus (and, consequently, any process using libdbus to receive messages) to abort. (CVE-2010-4352)
For the update to take effect, all running instances of dbus-daemon and all running applications using the libdbus library must be restarted, or the system rebooted.
SolutionUpdate the affected packages.