USN-4398-2: DBus vulnerability
16 June 2020
DBus could be made to crash if it received specially crafted input.
- dbus - simple interprocess messaging system
USN-4398-1 fixed a vulnerability in DBus. This update provides
the corresponding update for Ubuntu 12.04 ESM and Ubuntu 14.04 ESM.
Original advisory details:
Kevin Backhouse discovered that DBus incorrectly handled file descriptors.
A local attacker could possibly use this issue to cause DBus to crash,
resulting in a denial of service.
The problem can be corrected by updating your system to the following package versions:
After a standard system update you need to reboot your computer to make
all the necessary changes.
- USN-4398-1: dbus-x11, libdbus-1-3-udeb, dbus-1-doc, dbus-udeb, dbus-user-session, dbus-tests, libdbus-1-3, dbus, libdbus-1-dev