Logo
componentfirewalld
Name
firewalld
Version
1.3.4
Type
library
Description
Dynamic firewall daemon with a D-Bus interface
Licenses
GPL-2.0-or-later
PURL
-
CPE
cpe:2.3:*:firewalld:firewalld:1.3.4:*:*:*:*:*:*:*

Other Versions#


Project
Branch
Version
kirkstone
0.9.4
master
2.2.1

Vulnerabilities#


Name
Analysis
Description
Exploitable
A flaw was found in firewalld. A local unprivileged user can exploit this vulnerability by mis-authorizing two runtime D-Bus (Desktop Bus) setters, setZoneSettings2 and setPolicySettings. This mis-authorization allows the user to modify the runtime firewall state without proper authentication, leading to unauthorized changes in network security configurations.