NVD

Id
9295  
Name
CVE-2011-2520  
Description
fw_dbus.py in system-config-firewall 1.2.29 and earlier uses the pickle Python module unsafely during D-Bus communication between the GUI and the backend, which might allow local users to gain privileges via a crafted serialized object.  
Reject
 
CVSS Version
2  
CVSS Score
6  
Severity
Medium  
CVSS Base Score
6  
CVSS Impact Subscore
10  
CVSS Exploit Subscore
1.5  
CVSS Vector
(AV:L/AC:H/Au:S/C:C/I:C/A:C)  
Pub Date
2017-01-07  
Published
2011-07-21  
Modified Date
2011-08-11  
Seq
2011-2520  

Actions