CVE-2025-23222

CVSS 3.1 Score 8.4 of 10 (high)

Details

Published Jan 24, 2025
CWE ID 940

Summary

CVE-2025-23222 is a vulnerability affecting Deepin dde-api-proxy through version 1.0.19. The issue allows unprivileged users to access D-Bus services as root due to the way dde-api-proxy forwards messages. Dde-api-proxy runs as root and relays messages from local users to legacy D-Bus methods in actual D-Bus services, giving the false impression that root is making requests. As a result, several methods not intended for non-root users become accessible, potentially resulting in privilege escalation when Polkit is involved, allowing callers to be treated as administrators.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share