CVE-2011-2200
published 2011-06-22CVE-2011-2200: The _dbus_header_byteswap function in dbus-marshal-header.c in D-Bus (aka DBus) 1.2.x before 1.2.28, 1.4.x before 1.4.12, and 1.5.x before 1.5.4 does not…
PriorityP412medium4.6CVSS 2.0
AVLACLAuNCPIPAP
EPSS
0.39%
30.9th percentile
The _dbus_header_byteswap function in dbus-marshal-header.c in D-Bus (aka DBus) 1.2.x before 1.2.28, 1.4.x before 1.4.12, and 1.5.x before 1.5.4 does not properly handle a non-native byte order, which allows local users to cause a denial of service (connection loss), obtain potentially sensitive information, or conduct unspecified state-modification attacks via crafted messages.
Affected
31 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| d-bus_project | d-bus | — | — |
| d-bus_project | d-bus | — | — |
| d-bus_project | d-bus | — | — |
| debian | dbus | < dbus 1.4.12-1 (bookworm) | dbus 1.4.12-1 (bookworm) |
| freedesktop | dbus | — | — |
| freedesktop | dbus | — | — |
| freedesktop | dbus | — | — |
| freedesktop | dbus | — | — |
| freedesktop | dbus | — | — |
| freedesktop | dbus | — | — |
| freedesktop | dbus | — | — |
| freedesktop | dbus | — | — |
| freedesktop | dbus | — | — |
| freedesktop | dbus | — | — |
| freedesktop | dbus | — | — |
| freedesktop | dbus | — | — |
| freedesktop | dbus | — | — |
| freedesktop | dbus | — | — |
| freedesktop | dbus | — | — |
| freedesktop | dbus | — | — |
| freedesktop | dbus | — | — |
| freedesktop | dbus | — | — |
| freedesktop | dbus | — | — |
| freedesktop | dbus | — | — |
| freedesktop | dbus | — | — |
CVSS provenance
nvdv2.04.6MEDIUMAV:L/AC:L/Au:N/C:P/I:P/A:P
osv4.6MEDIUM
vendor_debian4.6LOW
vendor_redhat4.6MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-8qh5-rr38-7xjm: The _dbus_header_byteswap function in dbus-marshal-header
ghsa_unreviewed·2022-05-17
CVE-2011-2200 [MEDIUM] CWE-20 GHSA-8qh5-rr38-7xjm: The _dbus_header_byteswap function in dbus-marshal-header
The _dbus_header_byteswap function in dbus-marshal-header.c in D-Bus (aka DBus) 1.2.x before 1.2.28, 1.4.x before 1.4.12, and 1.5.x before 1.5.4 does not properly handle a non-native byte order, which allows local users to cause a denial of service (connection loss), obtain potentially sensitive information, or conduct unspecified state-modification attacks via crafted messages.
OSV
CVE-2011-2200: The _dbus_header_byteswap function in dbus-marshal-header
osv·2011-06-22·CVSS 4.6
CVE-2011-2200 [MEDIUM] CVE-2011-2200: The _dbus_header_byteswap function in dbus-marshal-header
The _dbus_header_byteswap function in dbus-marshal-header.c in D-Bus (aka DBus) 1.2.x before 1.2.28, 1.4.x before 1.4.12, and 1.5.x before 1.5.4 does not properly handle a non-native byte order, which allows local users to cause a denial of service (connection loss), obtain potentially sensitive information, or conduct unspecified state-modification attacks via crafted messages.
Ubuntu
DBus vulnerability
vendor_ubuntu·2011-07-26
CVE-2011-2200 DBus vulnerability
Title: DBus vulnerability
Summary: DBus could be made to crash if it processed a specially crafted message.
It was discovered that DBus did not properly validate the byte order of
messages under certain circumstances. An attacker could exploit this to
cause a denial of service via application crash or potentially obtain
access to sensitive information.
Instructions: After a standard system update you need to reboot your computer to make
all the necessary changes.
Red Hat
dbus: Local DoS via messages with non-native byte order
vendor_redhat·2011-06-09·CVSS 4.6
CVE-2011-2200 [MEDIUM] dbus: Local DoS via messages with non-native byte order
dbus: Local DoS via messages with non-native byte order
The _dbus_header_byteswap function in dbus-marshal-header.c in D-Bus (aka DBus) 1.2.x before 1.2.28, 1.4.x before 1.4.12, and 1.5.x before 1.5.4 does not properly handle a non-native byte order, which allows local users to cause a denial of service (connection loss), obtain potentially sensitive information, or conduct unspecified state-modification attacks via crafted messages.
Package: dbus (Red Hat Enterprise Linux 4) - Not affected
Debian
CVE-2011-2200: dbus - The _dbus_header_byteswap function in dbus-marshal-header.c in D-Bus (aka DBus) ...
vendor_debian·2011·CVSS 4.6
CVE-2011-2200 [MEDIUM] CVE-2011-2200: dbus - The _dbus_header_byteswap function in dbus-marshal-header.c in D-Bus (aka DBus) ...
The _dbus_header_byteswap function in dbus-marshal-header.c in D-Bus (aka DBus) 1.2.x before 1.2.28, 1.4.x before 1.4.12, and 1.5.x before 1.5.4 does not properly handle a non-native byte order, which allows local users to cause a denial of service (connection loss), obtain potentially sensitive information, or conduct unspecified state-modification attacks via crafted messages.
Scope: local
bookworm: resolved (fixed in 1.4.12-1)
bullseye: resolved (fixed in 1.4.12-1)
forky: resolved (fixed in 1.4.12-1)
sid: resolved (fixed in 1.4.12-1)
trixie: resolved (fixed in 1.4.12-1)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2011-2200 dbus: Local DoS via messages with non-native byte order
bugzilla·2011-06-12·CVSS 4.6
CVE-2011-2200 [MEDIUM] CVE-2011-2200 dbus: Local DoS via messages with non-native byte order
CVE-2011-2200 dbus: Local DoS via messages with non-native byte order
It was found that D-BUS message bus service / messaging facility did not
update the byte-order flag of the message properly by swapping the byte
order of incoming messages into their native endiannes. A local, authenticated
user could use this flaw to send a specially-crafted message to a system
service (like Avahi or NetworkManager), using the system bus, potentially
leading to disconnect of such a service from system bus (denial of service).
References:
[1] http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=629938
[2] https://bugs.freedesktop.org/show_bug.cgi?id=38120
Upstream patches:
[3] http://cgit.freedesktop.org/dbus/dbus/commit/?h=dbus-1.2&id=6519a1f77c61d753d4c97efd6e15630eb275336e
(in upstream v1.2.28 version)
Bugzilla
CVE-2011-2200 dbus: Local DoS via messages with non-native byte order [fedora-all]
bugzilla·2011-06-12·CVSS 4.6
CVE-2011-2200 [MEDIUM] CVE-2011-2200 dbus: Local DoS via messages with non-native byte order [fedora-all]
CVE-2011-2200 dbus: Local DoS via messages with non-native byte order [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected Fedora
versions.
For comments that are specific to the vulnerability please use bugs filed
against "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please include the bug IDs of the
respective parent bugs filed against the "Security Response" product.
Please mention CVE ids in the RPM changelog when available.
Bodhi update submission link:
https://admin.fedoraproject.org/updates/new/?type_=security&bugs=712676
Please note: this issue affects
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=629938http://cgit.freedesktop.org/dbus/dbus/commit/?h=dbus-1.2&id=6519a1f77c61d753d4c97efd6e15630eb275336ehttp://cgit.freedesktop.org/dbus/dbus/commit/?h=dbus-1.4&id=c3223ba6c401ba81df1305851312a47c485e6cd7http://cgit.freedesktop.org/dbus/dbus/tree/NEWS?h=dbus-1.2http://cgit.freedesktop.org/dbus/dbus/tree/NEWS?h=dbus-1.4http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10705http://lists.freedesktop.org/archives/dbus/2007-March/007357.htmlhttp://lists.freedesktop.org/archives/dbus/2011-May/014408.htmlhttp://openwall.com/lists/oss-security/2011/06/12/1http://openwall.com/lists/oss-security/2011/06/12/2http://openwall.com/lists/oss-security/2011/06/13/12http://secunia.com/advisories/44896http://www.redhat.com/support/errata/RHSA-2011-1132.htmlhttps://bugs.freedesktop.org/show_bug.cgi?id=38120https://bugzilla.redhat.com/show_bug.cgi?id=712676https://exchange.xforce.ibmcloud.com/vulnerabilities/67974http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=629938http://cgit.freedesktop.org/dbus/dbus/commit/?h=dbus-1.2&id=6519a1f77c61d753d4c97efd6e15630eb275336ehttp://cgit.freedesktop.org/dbus/dbus/commit/?h=dbus-1.4&id=c3223ba6c401ba81df1305851312a47c485e6cd7http://cgit.freedesktop.org/dbus/dbus/tree/NEWS?h=dbus-1.2http://cgit.freedesktop.org/dbus/dbus/tree/NEWS?h=dbus-1.4http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10705http://lists.freedesktop.org/archives/dbus/2007-March/007357.htmlhttp://lists.freedesktop.org/archives/dbus/2011-May/014408.htmlhttp://openwall.com/lists/oss-security/2011/06/12/1http://openwall.com/lists/oss-security/2011/06/12/2http://openwall.com/lists/oss-security/2011/06/13/12http://secunia.com/advisories/44896http://www.redhat.com/support/errata/RHSA-2011-1132.htmlhttps://bugs.freedesktop.org/show_bug.cgi?id=38120https://bugzilla.redhat.com/show_bug.cgi?id=712676https://exchange.xforce.ibmcloud.com/vulnerabilities/67974
2011-06-22
Published