A flaw was found in firewalld. A local unprivileged user can exploit this vulnerability by mis-authorizing two runtime D-Bus (Desktop Bus) setters, setZoneSettings2 and setPolicySettings. This mis-authorization allows the user to modify the runtime firewall state without proper authentication, leading to unauthorized changes in network security configurations.
{
"binaries": [
{
"binary_name": "firewall-applet",
"binary_version": "0.8.2-1"
},
{
"binary_name": "firewall-config",
"binary_version": "0.8.2-1"
},
{
"binary_name": "firewalld",
"binary_version": "0.8.2-1"
},
{
"binary_name": "python3-firewall",
"binary_version": "0.8.2-1"
}
]
}{
"binaries": [
{
"binary_name": "firewall-applet",
"binary_version": "1.1.1-1ubuntu1"
},
{
"binary_name": "firewall-config",
"binary_version": "1.1.1-1ubuntu1"
},
{
"binary_name": "firewalld",
"binary_version": "1.1.1-1ubuntu1"
},
{
"binary_name": "firewalld-tests",
"binary_version": "1.1.1-1ubuntu1"
},
{
"binary_name": "python3-firewall",
"binary_version": "1.1.1-1ubuntu1"
}
]
}{
"binaries": [
{
"binary_name": "firewall-applet",
"binary_version": "2.1.1-1"
},
{
"binary_name": "firewall-config",
"binary_version": "2.1.1-1"
},
{
"binary_name": "firewalld",
"binary_version": "2.1.1-1"
},
{
"binary_name": "firewalld-tests",
"binary_version": "2.1.1-1"
},
{
"binary_name": "python3-firewall",
"binary_version": "2.1.1-1"
}
]
}{
"binaries": [
{
"binary_name": "firewall-applet",
"binary_version": "2.3.1-2ubuntu1"
},
{
"binary_name": "firewall-config",
"binary_version": "2.3.1-2ubuntu1"
},
{
"binary_name": "firewalld",
"binary_version": "2.3.1-2ubuntu1"
},
{
"binary_name": "firewalld-tests",
"binary_version": "2.3.1-2ubuntu1"
},
{
"binary_name": "python3-firewall",
"binary_version": "2.3.1-2ubuntu1"
}
]
}{
"binaries": [
{
"binary_name": "firewall-applet",
"binary_version": "2.3.1-3"
},
{
"binary_name": "firewall-config",
"binary_version": "2.3.1-3"
},
{
"binary_name": "firewalld",
"binary_version": "2.3.1-3"
},
{
"binary_name": "firewalld-tests",
"binary_version": "2.3.1-3"
},
{
"binary_name": "python3-firewall",
"binary_version": "2.3.1-3"
}
]
}