firewalld.py in firewalld before 0.4.3.3 allows local users to bypass authentication and modify firewall configurations via the (1) addPassthrough, (2) removePassthrough, (3) addEntry, (4) removeEntry, or (5) setEntries D-Bus API method.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
History
No history.
Information
Published : 2017-04-19 14:59
Updated : 2025-04-20 01:37
NVD link : CVE-2016-5410
Mitre link : CVE-2016-5410
CVE.ORG link : CVE-2016-5410
JSON object : View
Products Affected
redhat
- enterprise_linux_workstation
- enterprise_linux_desktop
- enterprise_linux_server
- enterprise_linux_hpc_node
firewalld
- firewalld
CWE
CWE-287
Improper Authentication