D-Bus 1.3.0 through 1.6.x before 1.6.26, 1.8.x before 1.8.10, and 1.9.x before 1.9.2 allows local users to cause a denial of service (prevention of new connections and connection drop) by queuing the maximum number of file descriptors. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-3636.1.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Configuration 4 (hide)
|
Information
Published : 2014-11-18 07:59
Updated : 2017-09-07 18:29
NVD link : CVE-2014-7824
Mitre link : CVE-2014-7824
JSON object : View
CWE
CWE-399
Resource Management Errors
Products Affected
debian
- debian_linux
d-bus_project
- d-bus
canonical
- ubuntu_linux
mageia_project
- mageia