CVE-2016-5410

firewalld.py in firewalld before 0.4.3.3 allows local users to bypass authentication and modify firewall configurations via the (1) addPassthrough, (2) removePassthrough, (3) addEntry, (4) removeEntry, or (5) setEntries D-Bus API method.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
5.5 MEDIUM
LOCAL
LOW
LOW
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 18%
Affected Products (NVD)
VendorProductVersion
firewalldfirewalld
𝑥
≤ 0.4.3.2
redhatenterprise_linux_desktop
7.0
redhatenterprise_linux_hpc_node
7.0
redhatenterprise_linux_server
7.0
redhatenterprise_linux_workstation
7.0
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
firewalld
bookworm
1.3.3-1~deb12u1
fixed
bullseye
0.9.3-2
fixed
jessie
ignored
sid
2.3.0-1
fixed
trixie
2.2.3-2
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
firewalld
artful
not-affected
precise
dne
trusty
dne
xenial
Fixed 0.4.0-1ubuntu0.1
released
yakkety
not-affected
zesty
not-affected
openSUSE logo
openSUSE / SLES Releases
openSUSE Product
Release
firewall-applet
suse enterprise desktop 15
0.5.3-2.3
fixed
suse enterprise desktop 15 SP1
0.5.5-4.24.9
fixed
suse enterprise desktop 15 SP2
0.5.5-4.24.9
fixed
suse enterprise desktop 15 SP3
0.9.3-1.1
fixed
suse enterprise desktop 15 SP4
0.9.3-150400.7.6
fixed
suse enterprise desktop 15 SP5
0.9.3-150400.8.9.1
fixed
suse enterprise desktop 15 SP6
2.0.1-150600.1.3
fixed
suse enterprise desktop 15 SP7
2.0.1-150600.3.5.1
fixed
suse enterprise sap 15
0.5.3-2.3
fixed
suse enterprise sap 15 SP1
0.5.5-4.24.9
fixed
suse enterprise sap 15 SP2
0.5.5-4.24.9
fixed
suse enterprise sap 15 SP3
0.9.3-1.1
fixed
suse enterprise sap 15 SP4
0.9.3-150400.7.6
fixed
suse enterprise sap 15 SP5
0.9.3-150400.8.9.1
fixed
suse enterprise sap 15 SP6
2.0.1-150600.1.3
fixed
suse enterprise sap 15 SP7
2.0.1-150600.3.5.1
fixed
suse enterprise server 15
0.5.3-2.3
fixed
suse enterprise server 15 SP1
0.5.5-4.24.9
fixed
suse enterprise server 15 SP2
0.5.5-4.24.9
fixed
suse enterprise server 15 SP3
0.9.3-1.1
fixed
suse enterprise server 15 SP4
0.9.3-150400.7.6
fixed
suse enterprise server 15 SP5
0.9.3-150400.8.9.1
fixed
suse enterprise server 15 SP6
2.0.1-150600.1.3
fixed
suse enterprise server 15 SP7
2.0.1-150600.3.5.1
fixed
firewall-config
suse enterprise desktop 15
0.5.3-2.3
fixed
suse enterprise desktop 15 SP1
0.5.5-4.24.9
fixed
suse enterprise desktop 15 SP2
0.5.5-4.24.9
fixed
suse enterprise desktop 15 SP3
0.9.3-1.1
fixed
suse enterprise desktop 15 SP4
0.9.3-150400.7.6
fixed
suse enterprise desktop 15 SP5
0.9.3-150400.8.9.1
fixed
suse enterprise desktop 15 SP6
2.0.1-150600.1.3
fixed
suse enterprise desktop 15 SP7
2.0.1-150600.3.5.1
fixed
suse enterprise sap 15
0.5.3-2.3
fixed
suse enterprise sap 15 SP1
0.5.5-4.24.9
fixed
suse enterprise sap 15 SP2
0.5.5-4.24.9
fixed
suse enterprise sap 15 SP3
0.9.3-1.1
fixed
suse enterprise sap 15 SP4
0.9.3-150400.7.6
fixed
suse enterprise sap 15 SP5
0.9.3-150400.8.9.1
fixed
suse enterprise sap 15 SP6
2.0.1-150600.1.3
fixed
suse enterprise sap 15 SP7
2.0.1-150600.3.5.1
fixed
suse enterprise server 15
0.5.3-2.3
fixed
suse enterprise server 15 SP1
0.5.5-4.24.9
fixed
suse enterprise server 15 SP2
0.5.5-4.24.9
fixed
suse enterprise server 15 SP3
0.9.3-1.1
fixed
suse enterprise server 15 SP4
0.9.3-150400.7.6
fixed
suse enterprise server 15 SP5
0.9.3-150400.8.9.1
fixed
suse enterprise server 15 SP6
2.0.1-150600.1.3
fixed
suse enterprise server 15 SP7
2.0.1-150600.3.5.1
fixed
firewall-macros
suse enterprise desktop 15
0.5.3-2.3
fixed
suse enterprise desktop 15 SP1
0.5.5-4.24.9
fixed
suse enterprise desktop 15 SP2
0.5.5-4.24.9
fixed
suse enterprise desktop 15 SP3
0.9.3-1.1
fixed
suse enterprise sap 15
0.5.3-2.3
fixed
suse enterprise sap 15 SP1
0.5.5-4.24.9
fixed
suse enterprise sap 15 SP2
0.5.5-4.24.9
fixed
suse enterprise sap 15 SP3
0.9.3-1.1
fixed
suse enterprise server 15
0.5.3-2.3
fixed
suse enterprise server 15 SP1
0.5.5-4.24.9
fixed
suse enterprise server 15 SP2
0.5.5-4.24.9
fixed
suse enterprise server 15 SP3
0.9.3-1.1
fixed
firewalld
suse enterprise desktop 15
0.5.3-2.3
fixed
suse enterprise desktop 15 SP1
0.5.5-4.24.9
fixed
suse enterprise desktop 15 SP2
0.5.5-4.24.9
fixed
suse enterprise desktop 15 SP3
0.9.3-1.1
fixed
suse enterprise desktop 15 SP4
0.9.3-150400.7.6
fixed
suse enterprise desktop 15 SP5
0.9.3-150400.8.9.1
fixed
suse enterprise desktop 15 SP6
2.0.1-150600.1.3
fixed
suse enterprise desktop 15 SP7
2.0.1-150600.3.5.1
fixed
suse enterprise sap 15
0.5.3-2.3
fixed
suse enterprise sap 15 SP1
0.5.5-4.24.9
fixed
suse enterprise sap 15 SP2
0.5.5-4.24.9
fixed
suse enterprise sap 15 SP3
0.9.3-1.1
fixed
suse enterprise sap 15 SP4
0.9.3-150400.7.6
fixed
suse enterprise sap 15 SP5
0.9.3-150400.8.9.1
fixed
suse enterprise sap 15 SP6
2.0.1-150600.1.3
fixed
suse enterprise sap 15 SP7
2.0.1-150600.3.5.1
fixed
suse enterprise server 15
0.5.3-2.3
fixed
suse enterprise server 15 SP1
0.5.5-4.24.9
fixed
suse enterprise server 15 SP2
0.5.5-4.24.9
fixed
suse enterprise server 15 SP3
0.9.3-1.1
fixed
suse enterprise server 15 SP4
0.9.3-150400.7.6
fixed
suse enterprise server 15 SP5
0.9.3-150400.8.9.1
fixed
suse enterprise server 15 SP6
2.0.1-150600.1.3
fixed
suse enterprise server 15 SP7
2.0.1-150600.3.5.1
fixed
firewalld-bash-completion
suse enterprise desktop 15 SP7
2.0.1-150600.3.5.1
fixed
suse enterprise sap 15 SP7
2.0.1-150600.3.5.1
fixed
suse enterprise server 15 SP7
2.0.1-150600.3.5.1
fixed
firewalld-lang
suse enterprise desktop 15
0.5.3-2.3
fixed
suse enterprise desktop 15 SP1
0.5.5-4.24.9
fixed
suse enterprise desktop 15 SP2
0.5.5-4.24.9
fixed
suse enterprise desktop 15 SP3
0.9.3-1.1
fixed
suse enterprise desktop 15 SP4
0.9.3-150400.7.6
fixed
suse enterprise desktop 15 SP5
0.9.3-150400.8.9.1
fixed
suse enterprise desktop 15 SP6
2.0.1-150600.1.3
fixed
suse enterprise desktop 15 SP7
2.0.1-150600.3.5.1
fixed
suse enterprise sap 15
0.5.3-2.3
fixed
suse enterprise sap 15 SP1
0.5.5-4.24.9
fixed
suse enterprise sap 15 SP2
0.5.5-4.24.9
fixed
suse enterprise sap 15 SP3
0.9.3-1.1
fixed
suse enterprise sap 15 SP4
0.9.3-150400.7.6
fixed
suse enterprise sap 15 SP5
0.9.3-150400.8.9.1
fixed
suse enterprise sap 15 SP6
2.0.1-150600.1.3
fixed
suse enterprise sap 15 SP7
2.0.1-150600.3.5.1
fixed
suse enterprise server 15
0.5.3-2.3
fixed
suse enterprise server 15 SP1
0.5.5-4.24.9
fixed
suse enterprise server 15 SP2
0.5.5-4.24.9
fixed
suse enterprise server 15 SP3
0.9.3-1.1
fixed
suse enterprise server 15 SP4
0.9.3-150400.7.6
fixed
suse enterprise server 15 SP5
0.9.3-150400.8.9.1
fixed
suse enterprise server 15 SP6
2.0.1-150600.1.3
fixed
suse enterprise server 15 SP7
2.0.1-150600.3.5.1
fixed
firewalld-zsh-completion
suse enterprise desktop 15 SP7
2.0.1-150600.3.5.1
fixed
suse enterprise sap 15 SP7
2.0.1-150600.3.5.1
fixed
suse enterprise server 15 SP7
2.0.1-150600.3.5.1
fixed
python3-firewall
suse enterprise desktop 15
0.5.3-2.3
fixed
suse enterprise desktop 15 SP1
0.5.5-4.24.9
fixed
suse enterprise desktop 15 SP2
0.5.5-4.24.9
fixed
suse enterprise desktop 15 SP3
0.9.3-1.1
fixed
suse enterprise desktop 15 SP4
0.9.3-150400.7.6
fixed
suse enterprise desktop 15 SP5
0.9.3-150400.8.9.1
fixed
suse enterprise desktop 15 SP6
2.0.1-150600.1.3
fixed
suse enterprise desktop 15 SP7
2.0.1-150600.3.5.1
fixed
suse enterprise sap 15
0.5.3-2.3
fixed
suse enterprise sap 15 SP1
0.5.5-4.24.9
fixed
suse enterprise sap 15 SP2
0.5.5-4.24.9
fixed
suse enterprise sap 15 SP3
0.9.3-1.1
fixed
suse enterprise sap 15 SP4
0.9.3-150400.7.6
fixed
suse enterprise sap 15 SP5
0.9.3-150400.8.9.1
fixed
suse enterprise sap 15 SP6
2.0.1-150600.1.3
fixed
suse enterprise sap 15 SP7
2.0.1-150600.3.5.1
fixed
suse enterprise server 15
0.5.3-2.3
fixed
suse enterprise server 15 SP1
0.5.5-4.24.9
fixed
suse enterprise server 15 SP2
0.5.5-4.24.9
fixed
suse enterprise server 15 SP3
0.9.3-1.1
fixed
suse enterprise server 15 SP4
0.9.3-150400.7.6
fixed
suse enterprise server 15 SP5
0.9.3-150400.8.9.1
fixed
suse enterprise server 15 SP6
2.0.1-150600.1.3
fixed
suse enterprise server 15 SP7
2.0.1-150600.3.5.1
fixed
Red Hat logo
Red Hat Enterprise Linux Releases
Red Hat Product
Release
firewall-applet
RHEL 7
0:0.4.3.2-8.el7
fixed
firewall-config
RHEL 7
0:0.4.3.2-8.el7
fixed
firewalld
RHEL 7
0:0.4.3.2-8.el7
fixed
firewalld-filesystem
RHEL 7
0:0.4.3.2-8.el7
fixed
python-firewall
RHEL 7
0:0.4.3.2-8.el7
fixed