CVE-2015-0245
published 2015-02-13CVE-2015-0245: D-Bus 1.4.x through 1.6.x before 1.6.30, 1.8.x before 1.8.16, and 1.9.x before 1.9.10 does not validate the source of ActivationFailure signals, which allows…
PriorityP46low1.9CVSS 2.0
AVLACMAuNCNINAP
EPSS
0.27%
19.3th percentile
D-Bus 1.4.x through 1.6.x before 1.6.30, 1.8.x before 1.8.16, and 1.9.x before 1.9.10 does not validate the source of ActivationFailure signals, which allows local users to cause a denial of service (activation failure error returned) by leveraging a race condition involving sending an ActivationFailure signal before systemd responds.
Affected
57 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | dbus | < dbus 1.8.16-1 (bookworm) | dbus 1.8.16-1 (bookworm) |
| freedesktop | dbus | — | — |
| freedesktop | dbus | — | — |
| freedesktop | dbus | — | — |
| freedesktop | dbus | — | — |
| freedesktop | dbus | — | — |
| freedesktop | dbus | — | — |
| freedesktop | dbus | — | — |
| freedesktop | dbus | — | — |
| freedesktop | dbus | — | — |
| freedesktop | dbus | — | — |
| freedesktop | dbus | — | — |
| freedesktop | dbus | — | — |
| freedesktop | dbus | — | — |
| freedesktop | dbus | — | — |
| freedesktop | dbus | — | — |
| freedesktop | dbus | — | — |
| freedesktop | dbus | — | — |
| freedesktop | dbus | — | — |
| freedesktop | dbus | — | — |
| freedesktop | dbus | — | — |
| freedesktop | dbus | — | — |
| freedesktop | dbus | — | — |
| freedesktop | dbus | — | — |
| freedesktop | dbus | — | — |
CVSS provenance
nvdv2.01.9LOWAV:L/AC:M/Au:N/C:N/I:N/A:P
osv1.9LOW
vendor_debian1.9LOW
vendor_redhat1.9LOW
vendor_ubuntu1.9LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-8jc2-f36v-gc57: D-Bus 1
ghsa_unreviewed·2022-05-14
CVE-2015-0245 [LOW] CWE-362 GHSA-8jc2-f36v-gc57: D-Bus 1
D-Bus 1.4.x through 1.6.x before 1.6.30, 1.8.x before 1.8.16, and 1.9.x before 1.9.10 does not validate the source of ActivationFailure signals, which allows local users to cause a denial of service (activation failure error returned) by leveraging a race condition involving sending an ActivationFailure signal before systemd responds.
OSV
dbus vulnerabilities
osv·2016-11-01·CVSS 1.9
CVE-2015-0245 [LOW] dbus vulnerabilities
dbus vulnerabilities
It was discovered that DBus incorrectly validated the source of
ActivationFailure signals. A local attacker could use this issue to cause a
denial of service. This issue only applied to Ubuntu 12.04 LTS and Ubuntu
14.04 LTS. (CVE-2015-0245)
It was discovered that DBus incorrectly handled certain format strings. A
local attacker could use this issue to cause a denial of service, or
possibly execute arbitrary code. This issue is only exposed to unprivileged
users when the fix for CVE-2015-0245 is not applied, hence this issue is
only likely to affect Ubuntu 12.04 LTS and Ubuntu 14.04 LTS. Ubuntu 16.04
LTS and Ubuntu 16.10 have been updated as a preventative measure in the
event that a new attack vector for this issue is discovered.
(No CVE number)
OSV
CVE-2015-0245: D-Bus 1
osv·2015-02-13·CVSS 1.9
CVE-2015-0245 [LOW] CVE-2015-0245: D-Bus 1
D-Bus 1.4.x through 1.6.x before 1.6.30, 1.8.x before 1.8.16, and 1.9.x before 1.9.10 does not validate the source of ActivationFailure signals, which allows local users to cause a denial of service (activation failure error returned) by leveraging a race condition involving sending an ActivationFailure signal before systemd responds.
Ubuntu
DBus vulnerabilities
vendor_ubuntu·2016-11-01·CVSS 1.9
CVE-2015-0245 [LOW] DBus vulnerabilities
Title: DBus vulnerabilities
Summary: Several security issues were fixed in DBus.
It was discovered that DBus incorrectly validated the source of
ActivationFailure signals. A local attacker could use this issue to cause a
denial of service. This issue only applied to Ubuntu 12.04 LTS and Ubuntu
14.04 LTS. (CVE-2015-0245)
It was discovered that DBus incorrectly handled certain format strings. A
local attacker could use this issue to cause a denial of service, or
possibly execute arbitrary code. This issue is only exposed to unprivileged
users when the fix for CVE-2015-0245 is not applied, hence this issue is
only likely to affect Ubuntu 12.04 LTS and Ubuntu 14.04 LTS. Ubuntu 16.04
LTS and Ubuntu 16.10 have been updated as a preventative measure in the
event that a new attack vector for th
Red Hat
dbus: denial of service in dbus systemd activation
vendor_redhat·2015-02-09·CVSS 1.9
CVE-2015-0245 [LOW] CWE-285 dbus: denial of service in dbus systemd activation
dbus: denial of service in dbus systemd activation
D-Bus 1.4.x through 1.6.x before 1.6.30, 1.8.x before 1.8.16, and 1.9.x before 1.9.10 does not validate the source of ActivationFailure signals, which allows local users to cause a denial of service (activation failure error returned) by leveraging a race condition involving sending an ActivationFailure signal before systemd responds.
Statement: Red Hat Product Security has rated this issue as having Low security impact. This issue is not currently planned to be addressed in future updates. For additional information, refer to the Issue Severity Classification: https://access.redhat.com/security/updates/classification/.
Package: dbus (Red Hat Enterprise Linux 5) - Not affected
Package: dbus (Red Hat Enterprise Linux 6) - Not affected
Debian
CVE-2015-0245: dbus - D-Bus 1.4.x through 1.6.x before 1.6.30, 1.8.x before 1.8.16, and 1.9.x before 1...
vendor_debian·2015·CVSS 1.9
CVE-2015-0245 [LOW] CVE-2015-0245: dbus - D-Bus 1.4.x through 1.6.x before 1.6.30, 1.8.x before 1.8.16, and 1.9.x before 1...
D-Bus 1.4.x through 1.6.x before 1.6.30, 1.8.x before 1.8.16, and 1.9.x before 1.9.10 does not validate the source of ActivationFailure signals, which allows local users to cause a denial of service (activation failure error returned) by leveraging a race condition involving sending an ActivationFailure signal before systemd responds.
Scope: local
bookworm: resolved (fixed in 1.8.16-1)
bullseye: resolved (fixed in 1.8.16-1)
forky: resolved (fixed in 1.8.16-1)
sid: resolved (fixed in 1.8.16-1)
trixie: resolved (fixed in 1.8.16-1)
No detection rules found.
No public exploits indexed.
Bugzilla
dbus: Format string vulnerability
bugzilla·2016-10-11·CVSS 6.8
[MEDIUM] dbus: Format string vulnerability
dbus: Format string vulnerability
A format string vulnerability in the reference bus implementation,
dbus-daemon, could potentially allow local users to cause arbitrary
code execution or denial of service.
References:
http://seclists.org/oss-sec/2016/q4/85
Upstream bug (patches attached):
https://bugs.freedesktop.org/show_bug.cgi?id=98157
Discussion:
Created dbus tracking bugs for this issue:
Affects: fedora-all [bug 1383658]
---
Versions prior to 1.4.0 are not affected.
Note the "mitigated in" versions mentioned in oss-security post, where the attack is still possible but can only be conducted by root, who can already do much worse. Mitigations for CVE-2015-0245 are also effective in the same way.
The simplest mitigation for rhel-7 appears to be altering system.conf as per:
h
Bugzilla
CVE-2015-0245 dbus: denial of service in dbus systemd activation
bugzilla·2015-01-28·CVSS 1.9
CVE-2015-0245 [LOW] CVE-2015-0245 dbus: denial of service in dbus systemd activation
CVE-2015-0245 dbus: denial of service in dbus systemd activation
Tracked as: https://bugs.freedesktop.org/show_bug.cgi?id=88811
Versions affected: dbus >= 1.4.0
Type of vulnerability: CWE-285 Improper Authorization
Exploitable by: local users
Impact: denial of service
Reporter: Simon McVittie, Collabora Ltd.
D-Bus is an asynchronous inter-process communication system, commonly used for system services or within a desktop session on Linux and other operating systems.
dbus-daemon can "activate" (auto-start) D-Bus services on-demand when it receives a message addressed to them. In versions >= 1.4.0 of dbus, it can do this by using a D-Bus signal to ask systemd to carry out the actual service start.
systemd sends back an ActivationFailure D-Bus signal if the activation fails. However, when
http://advisories.mageia.org/MGASA-2015-0071.htmlhttp://lists.opensuse.org/opensuse-updates/2015-02/msg00066.htmlhttp://www.debian.org/security/2015/dsa-3161http://www.mandriva.com/security/advisories?name=MDVSA-2015:176http://www.openwall.com/lists/oss-security/2015/02/09/6http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.htmlhttp://advisories.mageia.org/MGASA-2015-0071.htmlhttp://lists.opensuse.org/opensuse-updates/2015-02/msg00066.htmlhttp://www.debian.org/security/2015/dsa-3161http://www.mandriva.com/security/advisories?name=MDVSA-2015:176http://www.openwall.com/lists/oss-security/2015/02/09/6http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
2015-02-13
Published