Search CVE reports


Toggle filters

11 – 12 of 12 results


CVE-2012-2737

Medium priority

Some fixes available 3 of 4

The user_change_icon_file_authorized_cb function in /usr/libexec/accounts-daemon in AccountsService before 0.6.22 does not properly check the UID when copying an icon file to the system cache directory, which allows local users to...

1 affected package

accountsservice

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
accountsservice
Show less packages

CVE-2011-4406

High priority
Fixed

The Ubuntu AccountsService package before 0.6.14-1git1ubuntu1.1 does not properly drop privileges when changing language settings, which allows local users to modify arbitrary files via unspecified vectors.

1 affected package

accountsservice

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
accountsservice
Show less packages