CVE-2013-0292: Freedesktop Dbus-Glib
High severity, CVSS 7.2. EPSS: 1.1% chance of exploitation in the next 30 days.
The dbus_g_proxy_manager_filter function in dbus-gproxy in Dbus-glib before 0.100.1 does not properly verify the sender of NameOwnerChanged signals, which allows local users to gain privileges via a spoofed signal.
Affected products
- Freedesktop Dbus-Glib: up to and including 0.100; version 0.72 only; version 0.73 only; version 0.74 only; version 0.76 only; version 0.78 only; …
Published 2013-03-05. Last modified 2026-06-16.