CVE-2008-3834

Publication date 7 October 2008

Last updated 24 July 2024


Ubuntu priority

The dbus_signature_validate function in the D-bus library (libdbus) before 1.2.4 allows remote attackers to cause a denial of service (application abort) via a message containing a malformed signature, which triggers a failed assertion error.

Status

Package Ubuntu Release Status
dbus 8.04 LTS hardy
Fixed 1.1.20-1ubuntu3.1
7.10 gutsy
Fixed 1.1.1-3ubuntu4.2
7.04 feisty
Fixed 1.0.2-1ubuntu4.2
6.06 LTS dapper
Fixed 0.60-6ubuntu8.3

References

Related Ubuntu Security Notices (USN)

    • USN-653-1
    • D-Bus vulnerabilities
    • 14 October 2008

Other references