Security Advisory
CVE-2011-4406
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
The Ubuntu AccountsService package before 0.6.14-1git1ubuntu1.1 does not properly drop privileges when changing language settings, which allows local users to modify arbitrary files via unspecified vectors.