CVE-2011-4406
Ubuntu AccountsService <0.6.14-1git1ubuntu1.1 - Privilege Escalation
Title source: llmDescription
The Ubuntu AccountsService package before 0.6.14-1git1ubuntu1.1 does not properly drop privileges when changing language settings, which allows local users to modify arbitrary files via unspecified vectors.
References (3)
Core 3
Core References
Various Sources x_refsource_confirm
http://people.canonical.com/~ubuntu-security/cve/2011/CVE-2011-4406.html
Patch x_refsource_confirm
http://bazaar.launchpad.net/~ubuntu-branches/ubuntu/oneiric/accountsservice/oneiric-updates/revision/21
Vendor Advisory vendor-advisory
x_refsource_ubuntu
http://www.ubuntu.com/usn/USN-1351-1
Scores
EPSS
0.0038
EPSS Percentile
30.4%
Details
CWE
CWE-264
Status
published
Products (2)
canonical/accountsservice
< 0.6.14
canonical/ubuntu_linux
11.10
Published
Apr 16, 2014
Tracked Since
Feb 18, 2026