{"id":"CVE-2022-31213","details":"An issue was discovered in dbus-broker before 31. Multiple NULL pointer dereferences can be found when supplying a malformed XML config file.","modified":"2026-08-12T03:51:49.151287661Z","published":"2022-07-17T00:00:00Z","related":["ALSA-2022:6608","openSUSE-SU-2022:10030-1"],"database_specific":{"osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/31xxx/CVE-2022-31213.json","cna_assigner":"mitre"},"references":[{"type":"WEB","url":"https://github.com/bus1/dbus-broker/compare/v30...v31"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/31xxx/CVE-2022-31213.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2022-31213"},{"type":"ADVISORY","url":"https://sec-consult.com/vulnerability-lab/advisory/memory-corruption-vulnerabilities-dbus-broker/"},{"type":"ADVISORY","url":"https://security.gentoo.org/glsa/202305-04"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/bus1/dbus-broker","events":[{"introduced":"0"},{"fixed":"4944daf06275aaccd2fcdbfea994c3cb7cec65d2"}],"database_specific":{"source":["DESCRIPTION","CPE_RANGE"],"cpe":"cpe:2.3:a:dbus-broker_project:dbus-broker:*:*:*:*:*:*:*:*","extracted_events":[{"introduced":"0"},{"fixed":"31"}]}}],"versions":["v30","v29","v28","v27","v26","v25","v24","v23","v22","v21","v20","v19","v18","v17","v16","v15","v14","v13","v12","v11","v10","v9","v8","v7","v6","v5","v4","v3","v2","v1","v1rc4","v1rc3","v1rc2","v1rc1"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-31213.json"}}],"schema_version":"1.9.0"}