Vulnerability Report

CVE-2012-3524

Title: Freedesktop Libdbus RCE

Auth Bypass

Proof Of Concept

PoC Available for CVE-2012-3524

CWE Category CWE-264
Published Date Sep 18, 2012
Modified Date Apr 29, 2026
Exploit Status Available
Score 6.9 CVSS v2.0
Exploit Probability (EPSS)
36.15%

Vulnerability Summary

CVE-2012-3524: libdbus 1.5.x and earlier, when used in setuid or other privileged programs in X.org and possibly other products, allows local users to gain privileges and execute arbitrary code via the DBUS_SYSTEM_BUS_ADDRESS environment variable. NOTE: libdbus maintainers state that this is a vulnerability in the applications that do not cleanse environment variables, not in libdbus itself: "we do not support use of libdbus in setuid binaries that do not sanitize their environment before their first call into libdbus."

Impacted Vendors

Reference Links

http://lists.opensuse.org/opensuse-security-announce/2012-09/msg00009.html http://lists.opensuse.org/opensuse-security-announce/2012-09/msg00015.html http://lists.opensuse.org/opensuse-security-announce/2012-10/msg00000.html http://lists.opensuse.org/opensuse-updates/2012-10/msg00094.html http://rhn.redhat.com/errata/RHSA-2012-1261.html http://secunia.com/advisories/50537 http://secunia.com/advisories/50544 http://secunia.com/advisories/50710 http://stealth.openwall.net/null/dzug.c http://www.exploit-db.com/exploits/21323 http://www.mandriva.com/security/advisories?name=MDVSA-2013:070 http://www.mandriva.com/security/advisories?name=MDVSA-2013:083 http://www.openwall.com/lists/oss-security/2012/07/10/4 http://www.openwall.com/lists/oss-security/2012/07/26/1 http://www.openwall.com/lists/oss-security/2012/09/12/6 http://www.openwall.com/lists/oss-security/2012/09/14/2 http://www.openwall.com/lists/oss-security/2012/09/17/2 http://www.securityfocus.com/bid/55517 http://www.ubuntu.com/usn/USN-1576-1 http://www.ubuntu.com/usn/USN-1576-2 https://bugs.freedesktop.org/show_bug.cgi?id=52202 https://bugzilla.novell.com/show_bug.cgi?id=697105 https://bugzilla.redhat.com/show_bug.cgi?id=847402 http://lists.opensuse.org/opensuse-security-announce/2012-09/msg00009.html http://lists.opensuse.org/opensuse-security-announce/2012-09/msg00015.html http://lists.opensuse.org/opensuse-security-announce/2012-10/msg00000.html http://lists.opensuse.org/opensuse-updates/2012-10/msg00094.html http://rhn.redhat.com/errata/RHSA-2012-1261.html http://secunia.com/advisories/50537 http://secunia.com/advisories/50544 http://secunia.com/advisories/50710 http://stealth.openwall.net/null/dzug.c http://www.exploit-db.com/exploits/21323 http://www.mandriva.com/security/advisories?name=MDVSA-2013:070 http://www.mandriva.com/security/advisories?name=MDVSA-2013:083 http://www.openwall.com/lists/oss-security/2012/07/10/4 http://www.openwall.com/lists/oss-security/2012/07/26/1 http://www.openwall.com/lists/oss-security/2012/09/12/6 http://www.openwall.com/lists/oss-security/2012/09/14/2 http://www.openwall.com/lists/oss-security/2012/09/17/2 http://www.securityfocus.com/bid/55517 http://www.ubuntu.com/usn/USN-1576-1 http://www.ubuntu.com/usn/USN-1576-2 https://bugs.freedesktop.org/show_bug.cgi?id=52202 https://bugzilla.novell.com/show_bug.cgi?id=697105 https://bugzilla.redhat.com/show_bug.cgi?id=847402
CVSS v2.0
Source Entity [email protected]
Severity MEDIUM
6.9
Access Vector
N/A
Authentication
N/A
RAW VECTOR AV:L/AC:M/Au:N/C:C/I:C/A:C

Associated Attack Patterns (CAPEC)

Total: Patterns

CVE-2012-3524 Exploits & PoCs (Proof Of Concept)

Exploit-DB https://www.exploit-db.com/exploits/21323
View Code
MODIFIED

Vulnerability data updated via NVD.

MODIFIED

Vulnerability data or affected products updated.

PUBLISHED

Vulnerability first announced in NVD.

Attack Vector Matrix

Access Vector N/A
Complexity N/A
Privileges N/A
Interaction NONE
CVSS Vector String AV:L/AC:M/Au:N/C:C/I:C/A:C

Affected Stack

No specific products linked.