← Back

CVE-2011-2200

nvd nist
Published: Jun 22, 2011Modified: Apr 29, 2026

JSON object

Loading...
4.6
Vector
AV:L/AC:L/Au:N/C:P/I:P/A:P
Exploitability: 3.9 / Impact: 6.4
Source: NVD

Description

The _dbus_header_byteswap function in dbus-marshal-header.c in D-Bus (aka DBus) 1.2.x before 1.2.28, 1.4.x before 1.4.12, and 1.5.x before 1.5.4 does not properly handle a non-native byte order, which allows local users to cause a denial of service (connection loss), obtain potentially sensitive information, or conduct unspecified state-modification attacks via crafted messages.

Affected (26)

1 product
Dbus
1 product
D Bus
Configuration A
2 vulnerable
Vulnerable SoftwareAffected Versions
Freedesktop
Version 1.5.0
Version 1.5.2
Configuration B
6 vulnerable
Vulnerable SoftwareAffected Versions
Freedesktop
Version 1.4.0
Version 1.4.10
Version 1.4.1
Version 1.4.4
Version 1.4.6
Version 1.4.8
Configuration C
18 vulnerable
Vulnerable SoftwareAffected Versions
D Bus Project
Version 1.2.4.2
Version 1.2.4.4
Version 1.2.4.6
Freedesktop
Version 1.2.10
Version 1.2.12
Version 1.2.14
Version 1.2.16
Version 1.2.18
Version 1.2.1
Version 1.2.20
Version 1.2.22
Version 1.2.24
Version 1.2.26
Version 1.2.2
Version 1.2.3
Version 1.2.4
Version 1.2.6
Version 1.2.8

References (32)

Source: secalert@redhat.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.