cbcvebase.
CVE-2013-2168
published 2013-07-03

CVE-2013-2168: The _dbus_printf_string_upper_bound function in dbus/dbus-sysdeps-unix.c in D-Bus (aka DBus) 1.4.x before 1.4.26, 1.6.x before 1.6.12, and 1.7.x before 1.7.4…

PriorityP48low1.9CVSS 2.0
AVLACMAuNCNINAP
EPSS
0.38%
30.7th percentile
The _dbus_printf_string_upper_bound function in dbus/dbus-sysdeps-unix.c in D-Bus (aka DBus) 1.4.x before 1.4.26, 1.6.x before 1.6.12, and 1.7.x before 1.7.4 allows local users to cause a denial of service (service crash) via a crafted message.

Affected

27 ranges· showing 25
VendorProductVersion rangeFixed in
debiandbus< dbus 1.6.12-1 (bookworm)dbus 1.6.12-1 (bookworm)
freedesktopdbus
freedesktopdbus
freedesktopdbus
freedesktopdbus
freedesktopdbus
freedesktopdbus
freedesktopdbus
freedesktopdbus
freedesktopdbus
freedesktopdbus
freedesktopdbus
freedesktopdbus
freedesktopdbus
freedesktopdbus
freedesktopdbus
freedesktopdbus
freedesktopdbus
freedesktopdbus
freedesktopdbus
freedesktopdbus
freedesktopdbus
freedesktopdbus>= 0 < 1.6.12-11.6.12-1
freedesktopdbus>= 0 < 1.6.12-11.6.12-1
freedesktopdbus>= 0 < 1.6.12-11.6.12-1

CVSS provenance

nvdv2.01.9LOWAV:L/AC:M/Au:N/C:N/I:N/A:P
osv1.9LOW
vendor_debian1.9LOW
vendor_redhat1.9LOW
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.