Return to CVE list

CVE-2012-2095

6.9
Medium

CVE-2012-2095

secalert@redhat.com
Deferred

Description

The SetWiredProperty function in the D-Bus interface in WICD before 1.7.2 allows local users to write arbitrary configuration settings and gain privileges via a crafted property name in a dbus message.

Exploits

187332012-04-12localLinux

WICD 1.7.1 - Local Privilege Escalation

By anonymous

References

af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/48759
af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/49657
af854a3a-2127-422b-91ae-364da2661108
http://www.exploit-db.com/exploits/18733
af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/bid/52987
af854a3a-2127-422b-91ae-364da2661108
https://bugs.launchpad.net/wicd/+bug/979221
af854a3a-2127-422b-91ae-364da2661108
https://launchpad.net/wicd/+announcement/9888