suse · CVE-2014-3532

Quick triage

Priority: medium Published: 2021-05-30 13:21:04 UTC Updated: 2026-04-18 18:39:21 UTC

View at Official suse advisory, NVD, CVE.org · CVE detail

Freshness: upstream tracker timestamp is available; use API updated time as primary recency signal.

Tracker summary

CVE-2014-3532 severity moderate: SUSE including 73 source package names (dbus-1, dbus-1-1.10.12-2.1, …), 103 product×package rows across 27 product lines (SUSE Linux Enterprise Desktop 12, SUSE Linux Enterprise Desktop 12 SP1, … (27 product lines)): Fixed 100, Known Not Affected 3.

Description:

dbus 1.3.0 before 1.6.22 and 1.8.x before 1.8.6, when running on Linux 2.6.37-rc4 or later, allows local users to cause a denial of service (system-bus disconnect of other services or applications) by sending a message containing a file descriptor, then exceeding the maximum recursion depth before the initial message is forwarded.

cvelogic Threat Intelligence