What is CVE-2026-16730?
CVE-2026-16730 is a vulnerability in dbus-broker where reaching the process file-descriptor limit causes EMFILE/ENFILE errors during peer setup to be treated as fatal, forcing the broker to exit. This allows a local attacker to cause a denial of service on the user session bus by opening many connections.
Azərbaycanca: CVE-2026-16730 dbus-broker-də aşkar edilmiş zəiflikdir. Proses fayl deskriptor limitinə çatdıqda peer quraşdırma zamanı yaranan EMFILE/ENFILE xətaları broker-in gözlənilmədən dayanmasına səbəb olur. Bu, yerli təcavüzkara çoxlu əlaqə açmaqla istifadəçi sessiya bus-unu sıradan çıxarmağa imkan verən xidmət rəddi (DoS) hücumuna yol aça bilər.
FAQ2
What is the impact of CVE-2026-16730 on dbus-broker?
When the process file-descriptor limit is reached, EMFILE/ENFILE errors during peer setup are treated as fatal, causing the broker to exit unexpectedly.
How can a local attacker exploit CVE-2026-16730?
A local attacker can cause a denial of service on the user session bus by opening many connections.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.