// For flags

CVE-2013-0292

dbus-glib pam_fprintd - Local Privilege Escalation

Severity Score

7.2
*CVSS v2

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

3
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

The dbus_g_proxy_manager_filter function in dbus-gproxy in Dbus-glib before 0.100.1 does not properly verify the sender of NameOwnerChanged signals, which allows local users to gain privileges via a spoofed signal.

La función dbus_g_proxy_manager_filter en dbus-gproxy en Dbus-glib anterior a v0.100.1 no verifica correctamente el emisor de señales NameOwnerChanged, permitiendo a usuarios locales obtener privilegios a través de una señal falsificada.

*Credits: N/A
CVSS Scores
Attack Vector
Local
Attack Complexity
Low
Authentication
None
Confidentiality
Complete
Integrity
Complete
Availability
Complete
Attack Vector
Local
Attack Complexity
Medium
Authentication
None
Confidentiality
Complete
Integrity
Complete
Availability
Complete
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2012-12-06 CVE Reserved
  • 2013-02-26 CVE Published
  • 2014-06-02 First Exploit
  • 2023-03-08 EPSS Updated
  • 2024-08-06 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
CWE
  • CWE-20: Improper Input Validation
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Freedesktop
Search vendor "Freedesktop"
Dbus-glib
Search vendor "Freedesktop" for product "Dbus-glib"
<= 0.100
Search vendor "Freedesktop" for product "Dbus-glib" and version " <= 0.100"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus-glib
Search vendor "Freedesktop" for product "Dbus-glib"
0.72
Search vendor "Freedesktop" for product "Dbus-glib" and version "0.72"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus-glib
Search vendor "Freedesktop" for product "Dbus-glib"
0.73
Search vendor "Freedesktop" for product "Dbus-glib" and version "0.73"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus-glib
Search vendor "Freedesktop" for product "Dbus-glib"
0.74
Search vendor "Freedesktop" for product "Dbus-glib" and version "0.74"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus-glib
Search vendor "Freedesktop" for product "Dbus-glib"
0.76
Search vendor "Freedesktop" for product "Dbus-glib" and version "0.76"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus-glib
Search vendor "Freedesktop" for product "Dbus-glib"
0.78
Search vendor "Freedesktop" for product "Dbus-glib" and version "0.78"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus-glib
Search vendor "Freedesktop" for product "Dbus-glib"
0.80
Search vendor "Freedesktop" for product "Dbus-glib" and version "0.80"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus-glib
Search vendor "Freedesktop" for product "Dbus-glib"
0.82
Search vendor "Freedesktop" for product "Dbus-glib" and version "0.82"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus-glib
Search vendor "Freedesktop" for product "Dbus-glib"
0.84
Search vendor "Freedesktop" for product "Dbus-glib" and version "0.84"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus-glib
Search vendor "Freedesktop" for product "Dbus-glib"
0.86
Search vendor "Freedesktop" for product "Dbus-glib" and version "0.86"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus-glib
Search vendor "Freedesktop" for product "Dbus-glib"
0.88
Search vendor "Freedesktop" for product "Dbus-glib" and version "0.88"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus-glib
Search vendor "Freedesktop" for product "Dbus-glib"
0.90
Search vendor "Freedesktop" for product "Dbus-glib" and version "0.90"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus-glib
Search vendor "Freedesktop" for product "Dbus-glib"
0.92
Search vendor "Freedesktop" for product "Dbus-glib" and version "0.92"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus-glib
Search vendor "Freedesktop" for product "Dbus-glib"
0.94
Search vendor "Freedesktop" for product "Dbus-glib" and version "0.94"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus-glib
Search vendor "Freedesktop" for product "Dbus-glib"
0.96
Search vendor "Freedesktop" for product "Dbus-glib" and version "0.96"
-
Affected
Freedesktop
Search vendor "Freedesktop"
Dbus-glib
Search vendor "Freedesktop" for product "Dbus-glib"
0.98
Search vendor "Freedesktop" for product "Dbus-glib" and version "0.98"
-
Affected