CVE-2014-7824: Canonical Ubuntu Linux
Low severity, CVSS 2.1. EPSS: 0.6% chance of exploitation in the next 30 days.
D-Bus 1.3.0 through 1.6.x before 1.6.26, 1.8.x before 1.8.10, and 1.9.x before 1.9.2 allows local users to cause a denial of service (prevention of new connections and connection drop) by queuing the maximum number of file descriptors. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-3636.1.
Affected products
- Canonical Ubuntu Linux: version 12.04 only; version 14.04 only; version 14.10 only
- Debian Debian Linux: version 7.0 only; version 8.0 only
- Freedesktop Dbus: version 1.6.0 only; version 1.6.2 only; version 1.6.4 only; version 1.6.6 only; version 1.6.8 only; version 1.6.10 only; …
- Mageia Project Mageia: version 3 only; version 4 only
Published 2014-11-18. Last modified 2026-06-17.