Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2020-16126

Опубликовано: 11 нояб. 2020
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 2.1
CVSS3: 3.3

Описание

An Ubuntu-specific modification to AccountsService in versions before 0.6.55-0ubuntu13.2, among other earlier versions, improperly dropped the ruid, allowing untrusted users to send signals to AccountService, thus stopping it from handling D-Bus messages in a timely fashion.

РелизСтатусПримечание
bionic

released

0.6.45-1ubuntu1.3
devel

released

0.6.55-0ubuntu13.2
esm-infra-legacy/trusty

released

0.6.35-0ubuntu7.3+esm2
esm-infra/bionic

released

0.6.45-1ubuntu1.3
esm-infra/focal

released

0.6.55-0ubuntu12~20.04.4
esm-infra/xenial

released

0.6.40-2ubuntu11.6
focal

released

0.6.55-0ubuntu12~20.04.4
groovy

released

0.6.55-0ubuntu13.2
precise/esm

DNE

trusty

ignored

end of standard support

Показывать по

EPSS

Процентиль: 83%
0.01989
Низкий

2.1 Low

CVSS2

3.3 Low

CVSS3

Связанные уязвимости

CVSS3: 3.3
nvd
около 5 лет назад

An Ubuntu-specific modification to AccountsService in versions before 0.6.55-0ubuntu13.2, among other earlier versions, improperly dropped the ruid, allowing untrusted users to send signals to AccountService, thus stopping it from handling D-Bus messages in a timely fashion.

CVSS3: 3.3
debian
около 5 лет назад

An Ubuntu-specific modification to AccountsService in versions before ...

github
больше 3 лет назад

An Ubuntu-specific modification to AccountsService in versions before 0.6.55-0ubuntu13.2, among other earlier versions, improperly dropped the ruid, allowing untrusted users to send signals to AccountService, thus stopping it from handling D-Bus messages in a timely fashion.

EPSS

Процентиль: 83%
0.01989
Низкий

2.1 Low

CVSS2

3.3 Low

CVSS3