An issue was discovered in D-Bus before 1.12.24, 1.13.x...
Moderate severity
Unreviewed
Published
Oct 10, 2022
to the GitHub Advisory Database
•
Updated Jan 5, 2024
Description
Published by the National Vulnerability Database
Oct 10, 2022
Published to the GitHub Advisory Database
Oct 10, 2022
Last updated
Jan 5, 2024
An issue was discovered in D-Bus before 1.12.24, 1.13.x and 1.14.x before 1.14.4, and 1.15.x before 1.15.2. An authenticated attacker can cause dbus-daemon and other programs that use libdbus to crash by sending a message with attached file descriptors in an unexpected format.
References