USN-799-1: D-Bus vulnerability
13 July 2009
D-Bus vulnerability
Releases
Packages
- dbus -
Details
It was discovered that the D-Bus library did not correctly validate
signatures. If a local user sent a specially crafted D-Bus key, they could
spoof a valid signature and bypass security policies.
Update instructions
The problem can be corrected by updating your system to the following package versions:
Ubuntu 9.04
Ubuntu 8.10
Ubuntu 8.04
Ubuntu 6.06
After a standard system upgrade you need to reboot your computer to
effect the necessary changes.