CVE Vulnerabilities

CVE-2009-0489

Published: Feb 09, 2009 | Modified: Jul 02, 2012
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
2.1 LOW
AV:L/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM

The DBus configuration file for Wicd before 1.5.9 allows arbitrary users to own org.wicd.daemon, which allows local users to receive messages that were intended for the Wicd daemon, possibly including credentials.

Affected Software

Name Vendor Start Version End Version
Wicd David_paleino * 1.5.8 (including)
Wicd David_paleino 1.2.7 (including) 1.2.7 (including)
Wicd David_paleino 1.3.1 (including) 1.3.1 (including)
Wicd David_paleino 1.4.0 (including) 1.4.0 (including)
Wicd David_paleino 1.4.1 (including) 1.4.1 (including)
Wicd David_paleino 1.4.2 (including) 1.4.2 (including)
Wicd David_paleino 1.5.0 (including) 1.5.0 (including)
Wicd David_paleino 1.5.1 (including) 1.5.1 (including)
Wicd David_paleino 1.5.2 (including) 1.5.2 (including)
Wicd David_paleino 1.5.3 (including) 1.5.3 (including)
Wicd David_paleino 1.5.4 (including) 1.5.4 (including)
Wicd David_paleino 1.5.5 (including) 1.5.5 (including)
Wicd David_paleino 1.5.6 (including) 1.5.6 (including)
Wicd David_paleino 1.5.7 (including) 1.5.7 (including)
Wicd Ubuntu upstream *

References