mirror of
https://github.com/fkie-cad/nvd-json-data-feeds.git
synced 2025-05-29 09:41:31 +00:00
175 lines
5.5 KiB
JSON
175 lines
5.5 KiB
JSON
![]() |
{
|
||
|
"id": "CVE-2006-6107",
|
||
|
"sourceIdentifier": "secalert@redhat.com",
|
||
|
"published": "2006-12-14T00:28:00.000",
|
||
|
"lastModified": "2017-10-11T01:31:24.860",
|
||
|
"vulnStatus": "Modified",
|
||
|
"evaluatorSolution": "This vulnrability is addressed in the following product release:\r\nD-BUS, D-BUS, 1.0.2",
|
||
|
"descriptions": [
|
||
|
{
|
||
|
"lang": "en",
|
||
|
"value": "Unspecified vulnerability in the match_rule_equal function in bus/signals.c in D-Bus before 1.0.2 allows local applications to remove match rules for other applications and cause a denial of service (lost process messages)."
|
||
|
},
|
||
|
{
|
||
|
"lang": "es",
|
||
|
"value": "Vulnerabilidad sin especificar en la funci\u00f3n match_rule_equal en bus/signals.c en el D-Bus para versiones anteriores a la 1.0.2 permite a aplicaciones locales borrar reglas de comparaci\u00f3n para otras aplicaciones y provocar una denegaci\u00f3n de servicio (p\u00e9rdida de mensajes de proceso)."
|
||
|
}
|
||
|
],
|
||
|
"vendorComments": [
|
||
|
{
|
||
|
"organization": "Red Hat",
|
||
|
"comment": "Red Hat Enterprise Linux 5 is not vulnerable to this issue as it contains a backported patch.",
|
||
|
"lastModified": "2007-03-14T00:00:00"
|
||
|
}
|
||
|
],
|
||
|
"metrics": {
|
||
|
"cvssMetricV2": [
|
||
|
{
|
||
|
"source": "nvd@nist.gov",
|
||
|
"type": "Primary",
|
||
|
"cvssData": {
|
||
|
"version": "2.0",
|
||
|
"vectorString": "AV:L/AC:L/Au:S/C:N/I:N/A:P",
|
||
|
"accessVector": "LOCAL",
|
||
|
"accessComplexity": "LOW",
|
||
|
"authentication": "SINGLE",
|
||
|
"confidentialityImpact": "NONE",
|
||
|
"integrityImpact": "NONE",
|
||
|
"availabilityImpact": "PARTIAL",
|
||
|
"baseScore": 1.7
|
||
|
},
|
||
|
"baseSeverity": "LOW",
|
||
|
"exploitabilityScore": 3.1,
|
||
|
"impactScore": 2.9,
|
||
|
"acInsufInfo": false,
|
||
|
"obtainAllPrivilege": false,
|
||
|
"obtainUserPrivilege": false,
|
||
|
"obtainOtherPrivilege": false,
|
||
|
"userInteractionRequired": false
|
||
|
}
|
||
|
]
|
||
|
},
|
||
|
"weaknesses": [
|
||
|
{
|
||
|
"source": "nvd@nist.gov",
|
||
|
"type": "Primary",
|
||
|
"description": [
|
||
|
{
|
||
|
"lang": "en",
|
||
|
"value": "NVD-CWE-Other"
|
||
|
}
|
||
|
]
|
||
|
}
|
||
|
],
|
||
|
"configurations": [
|
||
|
{
|
||
|
"nodes": [
|
||
|
{
|
||
|
"operator": "OR",
|
||
|
"negate": false,
|
||
|
"cpeMatch": [
|
||
|
{
|
||
|
"vulnerable": true,
|
||
|
"criteria": "cpe:2.3:a:d-bus:d-bus:0.13:*:*:*:*:*:*:*",
|
||
|
"matchCriteriaId": "96C71508-117F-4F79-9684-81C6541385BB"
|
||
|
},
|
||
|
{
|
||
|
"vulnerable": true,
|
||
|
"criteria": "cpe:2.3:a:d-bus:d-bus:0.20:*:*:*:*:*:*:*",
|
||
|
"matchCriteriaId": "0FD0AF82-7702-4B14-8274-97CD22009934"
|
||
|
},
|
||
|
{
|
||
|
"vulnerable": true,
|
||
|
"criteria": "cpe:2.3:a:d-bus:d-bus:0.21:*:*:*:*:*:*:*",
|
||
|
"matchCriteriaId": "67749B06-956D-463A-AA80-355C0A2BF877"
|
||
|
},
|
||
|
{
|
||
|
"vulnerable": true,
|
||
|
"criteria": "cpe:2.3:a:d-bus:d-bus:0.22:*:*:*:*:*:*:*",
|
||
|
"matchCriteriaId": "A919936C-3618-4566-B5BA-8B2E248E9D29"
|
||
|
},
|
||
|
{
|
||
|
"vulnerable": true,
|
||
|
"criteria": "cpe:2.3:a:d-bus:d-bus:0.23:*:*:*:*:*:*:*",
|
||
|
"matchCriteriaId": "5E75C31A-2BD2-4294-B023-C7C3993B8DB3"
|
||
|
},
|
||
|
{
|
||
|
"vulnerable": true,
|
||
|
"criteria": "cpe:2.3:a:d-bus:d-bus:1.0:*:*:*:*:*:*:*",
|
||
|
"matchCriteriaId": "97321D29-A5D6-4D6D-8BE7-00D160BB0A3C"
|
||
|
},
|
||
|
{
|
||
|
"vulnerable": true,
|
||
|
"criteria": "cpe:2.3:a:d-bus:d-bus:1.0.1:*:*:*:*:*:*:*",
|
||
|
"matchCriteriaId": "C21BA4DC-5A58-424B-BA88-33873F472FD4"
|
||
|
}
|
||
|
]
|
||
|
}
|
||
|
]
|
||
|
}
|
||
|
],
|
||
|
"references": [
|
||
|
{
|
||
|
"url": "http://archives.mandrivalinux.com/security-announce/2006-12/msg00025.php",
|
||
|
"source": "secalert@redhat.com"
|
||
|
},
|
||
|
{
|
||
|
"url": "http://lists.opensuse.org/opensuse-updates/2012-10/msg00094.html",
|
||
|
"source": "secalert@redhat.com"
|
||
|
},
|
||
|
{
|
||
|
"url": "http://lists.rpath.com/pipermail/security-announce/2007-February/000147.html",
|
||
|
"source": "secalert@redhat.com"
|
||
|
},
|
||
|
{
|
||
|
"url": "http://openpkg.com/go/OpenPKG-SA-2006.041",
|
||
|
"source": "secalert@redhat.com"
|
||
|
},
|
||
|
{
|
||
|
"url": "http://www.freedesktop.org/wiki/Software/dbus",
|
||
|
"source": "secalert@redhat.com"
|
||
|
},
|
||
|
{
|
||
|
"url": "http://www.redhat.com/support/errata/RHSA-2007-0008.html",
|
||
|
"source": "secalert@redhat.com"
|
||
|
},
|
||
|
{
|
||
|
"url": "http://www.securityfocus.com/bid/21571",
|
||
|
"source": "secalert@redhat.com",
|
||
|
"tags": [
|
||
|
"Patch"
|
||
|
]
|
||
|
},
|
||
|
{
|
||
|
"url": "http://www.securitytracker.com/id?1017608",
|
||
|
"source": "secalert@redhat.com"
|
||
|
},
|
||
|
{
|
||
|
"url": "http://www.ubuntu.com/usn/usn-401-1",
|
||
|
"source": "secalert@redhat.com"
|
||
|
},
|
||
|
{
|
||
|
"url": "http://www.vupen.com/english/advisories/2006/4988",
|
||
|
"source": "secalert@redhat.com"
|
||
|
},
|
||
|
{
|
||
|
"url": "https://bugs.freedesktop.org/show_bug.cgi?id=9142",
|
||
|
"source": "secalert@redhat.com",
|
||
|
"tags": [
|
||
|
"Patch"
|
||
|
]
|
||
|
},
|
||
|
{
|
||
|
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/30874",
|
||
|
"source": "secalert@redhat.com"
|
||
|
},
|
||
|
{
|
||
|
"url": "https://issues.rpath.com/browse/RPL-860",
|
||
|
"source": "secalert@redhat.com"
|
||
|
},
|
||
|
{
|
||
|
"url": "https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9951",
|
||
|
"source": "secalert@redhat.com"
|
||
|
}
|
||
|
]
|
||
|
}
|