First published: Tue Jun 16 2020(Updated: )
USN-4398-1 fixed a vulnerability in DBus. This update provides the corresponding update for Ubuntu 12.04 ESM and Ubuntu 14.04 ESM. Original advisory details: Kevin Backhouse discovered that DBus incorrectly handled file descriptors. A local attacker could possibly use this issue to cause DBus to crash, resulting in a denial of service.
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
ubuntu/libdbus-1-3 | <1.6.18-0ubuntu4.5+esm2 | 1.6.18-0ubuntu4.5+esm2 |
Ubuntu Ubuntu | =14.04 | |
All of | ||
ubuntu/libdbus-1-3 | <1.4.18-1ubuntu1.10 | 1.4.18-1ubuntu1.10 |
Ubuntu Ubuntu | =12.04 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this DBus vulnerability is USN-4398-2.
Ubuntu 12.04 ESM (libdbus-1-3 version 1.4.18-1ubuntu1.10) and Ubuntu 14.04 ESM (libdbus-1-3 version 1.6.18-0ubuntu4.5+esm2) are affected by this vulnerability.
The severity of this vulnerability is not specified in the information provided.
To fix this vulnerability, update libdbus-1-3 to the specified versions: 1.4.18-1ubuntu1.10 for Ubuntu 12.04 ESM and 1.6.18-0ubuntu4.5+esm2 for Ubuntu 14.04 ESM.
More information about this vulnerability can be found on the Ubuntu Security Notices website at https://ubuntu.com/security/notices/USN-4398-1 and the Canonical website at https://ubuntu.com/security/CVE-2020-12049.