📦

dbus-glib

Vendor: freedesktop

Actively Exploited 0 CISA KEV List
PoC / Exploits 1 Code Available
Total RCEs 0 Remote Access
Total CVEs 4 Total Indexed
Avg. EPSS 0.14% Exploit Prob.
Latest CVE CVE-2013-0292 Mar 05

Security Vulnerability Index

Page 1 / 1
7.2 CVSS
CVE-2013-0292
Exploit Found

The dbus_g_proxy_manager_filter function in dbus-gproxy in Dbus-glib before 0.100.1 does not properly verify the sender of NameOwnerChanged signals, which allows local users to gain privileges via a spoofed signal.

EPSS: 0.22%
3.6 CVSS

DBus-GLib 0.73 disregards the access flag of exported GObject properties, which allows local users to bypass intended access restrictions and possibly cause a denial of service by modifying properties, as demonstrated by properties of the (1) DeviceKit-Power, (2) NetworkManager, and (3) ModemManager services.

EPSS: 0.07%