CVE-2011-4406
https://notcve.org/view.php?id=CVE-2011-4406
The Ubuntu AccountsService package before 0.6.14-1git1ubuntu1.1 does not properly drop privileges when changing language settings, which allows local users to modify arbitrary files via unspecified vectors. El paquete Ubuntu AccountsService anterior a 0.6.14-1git1ubuntu1.1 no elimina debidamente privilegios cuando se cambian configuraciones de lenguaje, lo que permite a usuarios locales modificar archivos arbitrarios a través de vectores no especificados. • http://bazaar.launchpad.net/~ubuntu-branches/ubuntu/oneiric/accountsservice/oneiric-updates/revision/21 http://people.canonical.com/~ubuntu-security/cve/2011/CVE-2011-4406.html http://www.ubuntu.com/usn/USN-1351-1 • CWE-264: Permissions, Privileges, and Access Controls •