Logo
componentfirewalld
Name
firewalld
Version
0.9.4
Type
library
Description
Dynamic firewall daemon with a D-Bus interface
Licenses
GPL-2.0-or-later
PURL
-
CPE
cpe:2.3:*:firewalld:firewalld:0.9.4:*:*:*:*:*:*:*

Other Versions#


Project
Branch
Version
master
2.2.1
scarthgap
1.3.4

Vulnerabilities#


Name
Analysis
Description
Exploitable
A flaw was found in firewalld. A local unprivileged user can exploit this vulnerability by mis-authorizing two runtime D-Bus (Desktop Bus) setters, setZoneSettings2 and setPolicySettings. This mis-authorization allows the user to modify the runtime firewall state without proper authentication, leading to unauthorized changes in network security configurations.