Description
accountsservice no longer drops permissions when writting .pam_environment
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:HExploitability: 1.8 | Impact: 3.6Attack Vector: Local
Complexity: Low
Privileges: Low
User Interaction: None
Scope: Unchanged
Confidentiality: None
Integrity: None
Availability: High
Affected Packages3 packages
Also affects: Ubuntu Linux 22.04
🔴Vulnerability Details
4CVEListAccountsservice incorrectly drops privileges↗2025-03-25 ▶ GHSAGHSA-v7v5-m765-h4w4: accountsservice no longer drops permissions when writting↗2025-03-25 ▶ OSVaccountsservice vulnerability↗2022-05-24 ▶ OSVCVE-2022-1804: accountsservice no longer drops permissions when writting↗2022-05-24 ▶ 📋Vendor Advisories
2UbuntuAccountsService vulnerability↗2022-05-24 ▶ DebianCVE-2022-1804: accountsservice - accountsservice no longer drops permissions when writting .pam_environment↗2022 ▶