Permissions, Privileges, and Access Controls in gvfs - CVE-2019-12795

 

Permissions, Privileges, and Access Controls in gvfs - CVE-2019-12795

Published: June 13, 2019


Vulnerability identifier: #VU18791
CSH Severity: Low
CVSS v4: 2 [CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N]
CVE-ID: CVE-2019-12795
CWE-ID: CWE-264
Exploitation vector: Local access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a local attacker to escalate privileges on the system.

The vulnerability exists due to the daemon/gvfsdaemon.c opened a private D-Bus server socket without configuring an authorization rule. A local attacker can connect to this server socket and issue D-Bus method calls. 


Affected software

gvfs
RecoverPoint for Virtual Machines
SUSE Linux Enterprise Software Development Kit 12
SUSE Linux Enterprise Server for SAP Applications 12
SUSE Linux Enterprise Server 12
SUSE Linux Enterprise High Performance Computing 12
Red Hat CodeReady Linux Builder for IBM z Systems
Red Hat CodeReady Linux Builder for ARM 64
Red Hat CodeReady Linux Builder for Power, little endian
Red Hat CodeReady Linux Builder for x86_64
Red Hat Enterprise Linux for ARM 64
Red Hat Enterprise Linux for Power, little endian
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux for x86_64
Opensuse
Fedora
gvfs (Alpine package)
gnome-remote-desktop (Red Hat package)
accountsservice (Red Hat package)
plymouth (Red Hat package)
SDL (Red Hat package)
wayland-protocols (Red Hat package)
gvfs-fuse-debuginfo
gvfs-fuse
gvfs-backends-debuginfo
gvfs-backend-samba-debuginfo
gvfs
gvfs-backends
gvfs-backend-samba
gvfs-debuginfo
gvfs-debugsource
gvfs-lang
gvfs-devel
gvfs (Red Hat package)
pango (Red Hat package)
gjs (Red Hat package)
pidgin (Red Hat package)
webkit2gtk3 (Red Hat package)
gdk-pixbuf2 (Red Hat package)
gtk3 (Red Hat package)
baobab (Red Hat package)
file-roller (Red Hat package)
gnome-tweaks (Red Hat package)
nautilus (Red Hat package)
gnome-control-center (Red Hat package)
gdm (Red Hat package)
evince (Red Hat package)
gnome-software (Red Hat package)
gsettings-desktop-schemas (Red Hat package)
gnome-settings-daemon (Red Hat package)
gnome-shell-extensions (Red Hat package)
gnome-desktop3 (Red Hat package)
gnome-shell (Red Hat package)
mutter (Red Hat package)
appstream-data (Red Hat package)
chrome-gnome-shell (Red Hat package)
mozjs60 (Red Hat package)

How to mitigate CVE-2019-12795

Install updates from vendor's website.

gvfs - addressed in versions 1.38.3, 1.40.2, 1.41.3
gvfs (Alpine package) - update to 1.34.1-r1
RecoverPoint for Virtual Machines - update to 6.0 SP2 P1
gnome-remote-desktop (Red Hat package) - update to 0.1.6-5.el8
accountsservice (Red Hat package) - update to 0.6.50-7.el8
plymouth (Red Hat package) - update to 0.9.3-15.el8
SDL (Red Hat package) - update to 1.2.15-35.el8
wayland-protocols (Red Hat package) - update to 1.17-1.el8
gvfs-fuse-debuginfo - update to 1.28.3-18.6.1
gvfs-fuse - update to 1.28.3-18.6.1
gvfs-backends-debuginfo - update to 1.28.3-18.6.1
gvfs-backend-samba-debuginfo - update to 1.28.3-18.6.1
gvfs - update to 1.28.3-18.6.1
gvfs-backends - update to 1.28.3-18.6.1
gvfs-backend-samba - update to 1.28.3-18.6.1
gvfs-debuginfo - update to 1.28.3-18.6.1
gvfs-debugsource - update to 1.28.3-18.6.1
gvfs-lang - update to 1.28.3-18.6.1
gvfs-devel - update to 1.28.3-18.6.1
gvfs (Red Hat package) - update to 1.36.2-6.el8
gvfs - addressed in versions 1.38.3-1.fc29, 1.40.2-1.fc30
pango (Red Hat package) - update to 1.42.4-6.el8
gjs (Red Hat package) - update to 1.56.2-3.el8
pidgin (Red Hat package) - update to 2.13.0-5.el8
webkit2gtk3 (Red Hat package) - update to 2.24.3-1.el8
gdk-pixbuf2 (Red Hat package) - update to 2.36.12-5.el8
gtk3 (Red Hat package) - update to 3.22.30-4.el8
baobab (Red Hat package) - update to 3.28.0-2.el8
file-roller (Red Hat package) - update to 3.28.1-2.el8
gnome-tweaks (Red Hat package) - update to 3.28.1-6.el8
nautilus (Red Hat package) - update to 3.28.1-10.el8
gnome-control-center (Red Hat package) - update to 3.28.2-5.el8
gdm (Red Hat package) - update to 3.28.3-22.el8
evince (Red Hat package) - update to 3.28.4-3.el8
gnome-software (Red Hat package) - update to 3.30.6-2.el8
gsettings-desktop-schemas (Red Hat package) - update to 3.32.0-3.el8
gnome-settings-daemon (Red Hat package) - update to 3.32.0-4.el8
gnome-shell-extensions (Red Hat package) - update to 3.32.1-10.el8
gnome-desktop3 (Red Hat package) - update to 3.32.2-1.el8
gnome-shell (Red Hat package) - update to 3.32.2-9.el8
mutter (Red Hat package) - update to 3.32.2-10.el8
appstream-data (Red Hat package) - update to 8-20190805.el8
chrome-gnome-shell (Red Hat package) - update to 10.1-6.el8
mozjs60 (Red Hat package) - update to 60.9.0-3.el8

External References

Related Security Bulletins