CVE-2014-8148

Opensuse - Access Control

Title source: rule
STIX 2.1

Description

The default D-Bus access control rule in Midgard2 10.05.7.1 allows local users to send arbitrary method calls or signals to any process on the system bus and possibly execute arbitrary code with root privileges.

References (3)

Core 3
Core References
Mailing List, Third Party Advisory mailing-list x_refsource_mlist
http://www.openwall.com/lists/oss-security/2015/01/05/2
Third Party Advisory vendor-advisory x_refsource_suse
http://lists.opensuse.org/opensuse-updates/2015-01/msg00051.html
Third Party Advisory vendor-advisory x_refsource_suse
http://lists.opensuse.org/opensuse-updates/2015-02/msg00066.html

Scores

EPSS 0.0007
EPSS Percentile 21.7%

Details

CWE
CWE-264
Status published
Products (3)
midgard-project/midgard2 10.05.7.1
opensuse/opensuse 13.1
opensuse/opensuse 13.2
Published Jan 26, 2015
Tracked Since Feb 18, 2026