USN-1138-1: DBus-GLib vulnerability
26 May 2011
An attacker could send crafted input to applications using DBus-GLib and cause them to crash.
Releases
Packages
- dbus-glib - GLib bindings for DBus
Details
It was discovered that DBus-GLib did not properly verify the access flag of
exported GObject properties under certain circumstances. A local attacker
could exploit this to bypass intended access restrictions or possibly
cause a denial of service.
Update instructions
The problem can be corrected by updating your system to the following package versions:
Ubuntu 8.04
Ubuntu 10.04
In general, a standard system update will make all the necessary changes.