Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.1.12.2005.144.1
Category:Ubuntu Local Security Checks
Title:Ubuntu: Security Advisory (USN-144-1)
Summary:The remote host is missing an update for the 'dbus' package(s) announced via the USN-144-1 advisory.
Description:Summary:
The remote host is missing an update for the 'dbus' package(s) announced via the USN-144-1 advisory.

Vulnerability Insight:
Besides providing the global system-wide communication bus, dbus also
offers per-user 'session' buses which applications in an user's
session can create and use to communicate with each other. Daniel
Reed discovered that the default configuration of the session dbus
allowed a local user to connect to another user's session bus if its
address was known. The fixed packages restrict the default permissions
to the user who owns the session dbus instance.

Please note that a standard Ubuntu installation does not use the
session bus for anything, so this can only be exploited if you are
using custom software which uses it.

Affected Software/OS:
'dbus' package(s) on Ubuntu 4.10.

Solution:
Please install the updated package(s).

CVSS Score:
2.1

CVSS Vector:
AV:L/AC:L/Au:N/C:P/I:N/A:N

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2005-0201
AUSCERT Advisory: ESB-2005.0435
http://www.auscert.org.au/render.html?it=5156
BugTraq ID: 12435
http://www.securityfocus.com/bid/12435
http://www.mandriva.com/security/advisories?name=MDKSA-2005:105
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10973
http://www.redhat.com/support/errata/RHSA-2005-102.html
http://securitytracker.com/id?1013075
http://secunia.com/advisories/14119
http://secunia.com/advisories/15638
http://secunia.com/advisories/15833
http://secunia.com/advisories/15844
https://usn.ubuntu.com/144-1/
CopyrightCopyright (C) 2022 Greenbone AG

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.