fw_dbus.py in system-config-firewall 1.2.29 and earlier uses the pickle Python module unsafely during D-Bus communication between the GUI and the backend, which might allow local users to gain privileges via a crafted serialized object.
The product deserializes untrusted data without sufficiently ensuring that the resulting data will be valid.
Name | Vendor | Start Version | End Version |
---|---|---|---|
System-config-firewall | Redhat | * | 1.2.29 (including) |
Red Hat Enterprise Linux 6 | RedHat | system-config-firewall-0:1.2.27-3.el6_1.3 | * |
Red Hat Enterprise Linux 6 | RedHat | system-config-printer-0:1.1.16-17.el6_1.2 | * |
System-config-printer | Ubuntu | hardy | * |