Описание
Firewalld: firewalld: local unprivileged user can modify firewall state due to d-bus setter mis-authorization
Обновления
| Продукт | Статья | Обновление |
|---|---|---|
| azl3 firewalld 2.0.2-3 on Azure Linux 3.0 | - | |
| azl3 firewalld 2.0.2-4 on Azure Linux 3.0 | - | |
| cbl2 firewalld 1.0.3-2 on CBL-Mariner 2.0 |
Показывать по
EPSS
5.5 Medium
CVSS3
Связанные уязвимости
A flaw was found in firewalld. A local unprivileged user can exploit this vulnerability by mis-authorizing two runtime D-Bus (Desktop Bus) setters, setZoneSettings2 and setPolicySettings. This mis-authorization allows the user to modify the runtime firewall state without proper authentication, leading to unauthorized changes in network security configurations.
A flaw was found in firewalld. A local unprivileged user can exploit this vulnerability by mis-authorizing two runtime D-Bus (Desktop Bus) setters, setZoneSettings2 and setPolicySettings. This mis-authorization allows the user to modify the runtime firewall state without proper authentication, leading to unauthorized changes in network security configurations.
A flaw was found in firewalld. A local unprivileged user can exploit this vulnerability by mis-authorizing two runtime D-Bus (Desktop Bus) setters, setZoneSettings2 and setPolicySettings. This mis-authorization allows the user to modify the runtime firewall state without proper authentication, leading to unauthorized changes in network security configurations.
A flaw was found in firewalld. A local unprivileged user can exploit t ...
EPSS
5.5 Medium
CVSS3