// For flags

CVE-2008-4311

 

Severity Score

4.6
*CVSS v2

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

The default configuration of system.conf in D-Bus (aka DBus) before 1.2.6 omits the send_type attribute in certain rules, which allows local users to bypass intended access restrictions by (1) sending messages, related to send_requested_reply; and possibly (2) receiving messages, related to receive_requested_reply.

La configuraciĆ³n por defecto de system.conf en
D-Bus (alias DBus) y versiones anteriores a 1.2.6 omite el atributo send_type en ciertas reglas, el cual permite a los usuarios locales evitar las restricciones de acceso (1) enviando mensajes, en relaciĆ³n a send_requested_reply; y posiblemente (2) recibiendo mensajes, relativos a receive_requested_reply.

*Credits: N/A
CVSS Scores
Attack Vector
Local
Attack Complexity
Low
Authentication
None
Confidentiality
Partial
Integrity
Partial
Availability
Partial
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2008-09-29 CVE Reserved
  • 2008-12-10 CVE Published
  • 2023-03-08 EPSS Updated
  • 2024-08-07 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-16: Configuration
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Freedesktop
Search vendor "Freedesktop"
Dbus
Search vendor "Freedesktop" for product "Dbus"
<= 1.2.4
Search vendor "Freedesktop" for product "Dbus" and version " <= 1.2.4"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus
Search vendor "Freedesktop" for product "Dbus"
0.1
Search vendor "Freedesktop" for product "Dbus" and version "0.1"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus
Search vendor "Freedesktop" for product "Dbus"
0.2
Search vendor "Freedesktop" for product "Dbus" and version "0.2"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus
Search vendor "Freedesktop" for product "Dbus"
0.3
Search vendor "Freedesktop" for product "Dbus" and version "0.3"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus
Search vendor "Freedesktop" for product "Dbus"
0.4
Search vendor "Freedesktop" for product "Dbus" and version "0.4"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus
Search vendor "Freedesktop" for product "Dbus"
0.5
Search vendor "Freedesktop" for product "Dbus" and version "0.5"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus
Search vendor "Freedesktop" for product "Dbus"
0.6
Search vendor "Freedesktop" for product "Dbus" and version "0.6"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus
Search vendor "Freedesktop" for product "Dbus"
0.7
Search vendor "Freedesktop" for product "Dbus" and version "0.7"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus
Search vendor "Freedesktop" for product "Dbus"
0.8
Search vendor "Freedesktop" for product "Dbus" and version "0.8"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus
Search vendor "Freedesktop" for product "Dbus"
0.9
Search vendor "Freedesktop" for product "Dbus" and version "0.9"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus
Search vendor "Freedesktop" for product "Dbus"
0.10
Search vendor "Freedesktop" for product "Dbus" and version "0.10"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus
Search vendor "Freedesktop" for product "Dbus"
0.11
Search vendor "Freedesktop" for product "Dbus" and version "0.11"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus
Search vendor "Freedesktop" for product "Dbus"
0.12
Search vendor "Freedesktop" for product "Dbus" and version "0.12"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus
Search vendor "Freedesktop" for product "Dbus"
0.13
Search vendor "Freedesktop" for product "Dbus" and version "0.13"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus
Search vendor "Freedesktop" for product "Dbus"
0.20
Search vendor "Freedesktop" for product "Dbus" and version "0.20"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus
Search vendor "Freedesktop" for product "Dbus"
0.21
Search vendor "Freedesktop" for product "Dbus" and version "0.21"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus
Search vendor "Freedesktop" for product "Dbus"
0.22
Search vendor "Freedesktop" for product "Dbus" and version "0.22"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus
Search vendor "Freedesktop" for product "Dbus"
0.23
Search vendor "Freedesktop" for product "Dbus" and version "0.23"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus
Search vendor "Freedesktop" for product "Dbus"
0.23.1
Search vendor "Freedesktop" for product "Dbus" and version "0.23.1"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus
Search vendor "Freedesktop" for product "Dbus"
0.23.2
Search vendor "Freedesktop" for product "Dbus" and version "0.23.2"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus
Search vendor "Freedesktop" for product "Dbus"
0.23.3
Search vendor "Freedesktop" for product "Dbus" and version "0.23.3"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus
Search vendor "Freedesktop" for product "Dbus"
0.31
Search vendor "Freedesktop" for product "Dbus" and version "0.31"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus
Search vendor "Freedesktop" for product "Dbus"
0.32
Search vendor "Freedesktop" for product "Dbus" and version "0.32"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus
Search vendor "Freedesktop" for product "Dbus"
0.33
Search vendor "Freedesktop" for product "Dbus" and version "0.33"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus
Search vendor "Freedesktop" for product "Dbus"
0.34
Search vendor "Freedesktop" for product "Dbus" and version "0.34"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus
Search vendor "Freedesktop" for product "Dbus"
0.35
Search vendor "Freedesktop" for product "Dbus" and version "0.35"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus
Search vendor "Freedesktop" for product "Dbus"
0.35.1
Search vendor "Freedesktop" for product "Dbus" and version "0.35.1"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus
Search vendor "Freedesktop" for product "Dbus"
0.35.2
Search vendor "Freedesktop" for product "Dbus" and version "0.35.2"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus
Search vendor "Freedesktop" for product "Dbus"
0.36
Search vendor "Freedesktop" for product "Dbus" and version "0.36"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus
Search vendor "Freedesktop" for product "Dbus"
0.36.1
Search vendor "Freedesktop" for product "Dbus" and version "0.36.1"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus
Search vendor "Freedesktop" for product "Dbus"
0.36.2
Search vendor "Freedesktop" for product "Dbus" and version "0.36.2"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus
Search vendor "Freedesktop" for product "Dbus"
0.50
Search vendor "Freedesktop" for product "Dbus" and version "0.50"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus
Search vendor "Freedesktop" for product "Dbus"
0.60
Search vendor "Freedesktop" for product "Dbus" and version "0.60"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus
Search vendor "Freedesktop" for product "Dbus"
0.61
Search vendor "Freedesktop" for product "Dbus" and version "0.61"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus
Search vendor "Freedesktop" for product "Dbus"
0.62
Search vendor "Freedesktop" for product "Dbus" and version "0.62"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus
Search vendor "Freedesktop" for product "Dbus"
0.90
Search vendor "Freedesktop" for product "Dbus" and version "0.90"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus
Search vendor "Freedesktop" for product "Dbus"
0.91
Search vendor "Freedesktop" for product "Dbus" and version "0.91"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus
Search vendor "Freedesktop" for product "Dbus"
0.92
Search vendor "Freedesktop" for product "Dbus" and version "0.92"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus
Search vendor "Freedesktop" for product "Dbus"
1.0
Search vendor "Freedesktop" for product "Dbus" and version "1.0"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus
Search vendor "Freedesktop" for product "Dbus"
1.0
Search vendor "Freedesktop" for product "Dbus" and version "1.0"
rc1
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus
Search vendor "Freedesktop" for product "Dbus"
1.0
Search vendor "Freedesktop" for product "Dbus" and version "1.0"
rc2
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus
Search vendor "Freedesktop" for product "Dbus"
1.0
Search vendor "Freedesktop" for product "Dbus" and version "1.0"
rc3
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus
Search vendor "Freedesktop" for product "Dbus"
1.1.0
Search vendor "Freedesktop" for product "Dbus" and version "1.1.0"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus
Search vendor "Freedesktop" for product "Dbus"
1.1.1
Search vendor "Freedesktop" for product "Dbus" and version "1.1.1"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus
Search vendor "Freedesktop" for product "Dbus"
1.1.2
Search vendor "Freedesktop" for product "Dbus" and version "1.1.2"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus
Search vendor "Freedesktop" for product "Dbus"
1.1.4
Search vendor "Freedesktop" for product "Dbus" and version "1.1.4"
-
Affected