Vulnerability Details CVE-2014-7824
D-Bus 1.3.0 through 1.6.x before 1.6.26, 1.8.x before 1.8.10, and 1.9.x before 1.9.2 allows local users to cause a denial of service (prevention of new connections and connection drop) by queuing the maximum number of file descriptors. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-3636.1.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 28.6%
CVSS Severity
CVSS v2 Score 2.1
Products affected by CVE-2014-7824
-
cpe:2.3:a:freedesktop:dbus:1.6.0
-
cpe:2.3:a:freedesktop:dbus:1.6.10
-
cpe:2.3:a:freedesktop:dbus:1.6.12
-
cpe:2.3:a:freedesktop:dbus:1.6.14
-
cpe:2.3:a:freedesktop:dbus:1.6.16
-
cpe:2.3:a:freedesktop:dbus:1.6.18
-
cpe:2.3:a:freedesktop:dbus:1.6.2
-
cpe:2.3:a:freedesktop:dbus:1.6.20
-
cpe:2.3:a:freedesktop:dbus:1.6.22
-
cpe:2.3:a:freedesktop:dbus:1.6.24
-
cpe:2.3:a:freedesktop:dbus:1.6.4
-
cpe:2.3:a:freedesktop:dbus:1.6.6
-
cpe:2.3:a:freedesktop:dbus:1.6.8
-
cpe:2.3:a:freedesktop:dbus:1.8.0
-
cpe:2.3:a:freedesktop:dbus:1.8.2
-
cpe:2.3:a:freedesktop:dbus:1.8.4
-
cpe:2.3:a:freedesktop:dbus:1.8.6
-
cpe:2.3:a:freedesktop:dbus:1.8.8
-
cpe:2.3:a:freedesktop:dbus:1.9.0
-
cpe:2.3:o:canonical:ubuntu_linux:12.04
-
cpe:2.3:o:canonical:ubuntu_linux:14.04
-
cpe:2.3:o:canonical:ubuntu_linux:14.10
-
cpe:2.3:o:debian:debian_linux:7.0
-
cpe:2.3:o:debian:debian_linux:8.0
-
cpe:2.3:o:mageia_project:mageia:3
-
cpe:2.3:o:mageia_project:mageia:4