An Ubuntu-specific modification to AccountsService in versions before 0.6.55-0ubuntu13.2, among other earlier versions, improperly dropped the ruid, allowing untrusted users to send signals to AccountService, thus stopping it from handling D-Bus messages in a timely fashion.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: canonical
Published: 2020-11-11T04:10:15.043946Z
Updated: 2024-09-16T17:15:27.923Z
Reserved: 2020-07-29T00:00:00
Link: CVE-2020-16126
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2020-11-11T04:15:12.053
Modified: 2020-11-24T19:17:10.607
Link: CVE-2020-16126
Redhat
No data.