← Back

CVE-2014-3477

nvd nist
Published: Jul 1, 2014Modified: May 6, 2026

JSON object

Loading...
4.0
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
Exploitability: 2.5 / Impact: 1.4
Source: 134c704f-9b21-4f2e-91b3-4a467353bcc0 (Secondary)

Description

The dbus-daemon in D-Bus 1.2.x through 1.4.x, 1.6.x before 1.6.20, and 1.8.x before 1.8.4, sends an AccessDenied error to the service instead of a client when the client is prohibited from accessing the service, which allows local users to cause a denial of service (initialization failure and exit) or possibly conduct a side-channel attack via a D-Bus message to an inactive service.

Affected (47)

1 product
D Bus
1 product
Dbus
Configuration A
47 vulnerable
Vulnerable SoftwareAffected Versions
D Bus Project
Version 1.2.4.2
Version 1.2.4.4
Version 1.2.4.6
Freedesktop
Version 1.2.10
Version 1.2.12
Version 1.2.14
Version 1.2.16
Version 1.2.18
Version 1.2.1
Version 1.2.20
Version 1.2.22
Version 1.2.24
Version 1.2.26
Version 1.2.28
Version 1.2.30
Version 1.2.3
Version 1.2.4
Version 1.2.6
Version 1.2.8
Version 1.3.0
Version 1.3.1
Version 1.4.0
Version 1.4.10
Version 1.4.12
Version 1.4.14
Version 1.4.16
Version 1.4.18
Version 1.4.1
Version 1.4.20
Version 1.4.22
Version 1.4.24
Version 1.4.26
Version 1.4.4
Version 1.4.6
Version 1.4.8
Version 1.6.0
Version 1.6.10
Version 1.6.12
Version 1.6.14
Version 1.6.16
Version 1.6.18
Version 1.6.2
Version 1.6.4
Version 1.6.6
Version 1.6.8
Version 1.8.0
Version 1.8.2

References (26)

Source: secalert@redhat.com
Patch
Source: secalert@redhat.com
Source: secalert@redhat.com
Source: secalert@redhat.com
Source: secalert@redhat.com
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.