CVE Vulnerabilities

CVE-2009-0489

Published: Feb 09, 2009 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
2.1 LOW
AV:L/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

The DBus configuration file for Wicd before 1.5.9 allows arbitrary users to own org.wicd.daemon, which allows local users to receive messages that were intended for the Wicd daemon, possibly including credentials.

Affected Software

NameVendorStart VersionEnd Version
WicdDavid_paleino*1.5.8 (including)
WicdDavid_paleino1.2.7 (including)1.2.7 (including)
WicdDavid_paleino1.3.1 (including)1.3.1 (including)
WicdDavid_paleino1.4.0 (including)1.4.0 (including)
WicdDavid_paleino1.4.1 (including)1.4.1 (including)
WicdDavid_paleino1.4.2 (including)1.4.2 (including)
WicdDavid_paleino1.5.0 (including)1.5.0 (including)
WicdDavid_paleino1.5.1 (including)1.5.1 (including)
WicdDavid_paleino1.5.2 (including)1.5.2 (including)
WicdDavid_paleino1.5.3 (including)1.5.3 (including)
WicdDavid_paleino1.5.4 (including)1.5.4 (including)
WicdDavid_paleino1.5.5 (including)1.5.5 (including)
WicdDavid_paleino1.5.6 (including)1.5.6 (including)
WicdDavid_paleino1.5.7 (including)1.5.7 (including)
WicdUbuntuupstream*

References