← Back

CVE-2011-1842

nvd nist
Published: May 3, 2011Modified: Apr 29, 2026

JSON object

Loading...
7.2
Vector
AV:L/AC:L/Au:N/C:C/I:C/A:C
Exploitability: 3.9 / Impact: 10.0
Source: NVD

Description

dbus_backend/lsd.py in the D-Bus backend in language-selector before 0.6.7 does not validate the arguments to the (1) SetSystemDefaultLangEnv and (2) SetSystemDefaultLanguageEnv functions, which allows local users to gain privileges via shell metacharacters in a string argument, a different vulnerability than CVE-2011-0729.

Affected (113)

1 product
Language Selector
Configuration A
113 vulnerable
Vulnerable SoftwareAffected Versions
Ubuntu
Up to 0.6.6
Version 0.0+baz20050531
Version 0.0+baz20050609
Version 0.0+baz20050614
Version 0.0+baz20050808
Version 0.0+baz20050811
Version 0.0+baz20050819.2
Version 0.0+baz20050819
Version 0.0+baz20050822
Version 0.0+baz20050823
Version 0.0+baz20050824
Version 0.0+baz20050912
Version 0.0+baz20050926
Version 0.0+baz20050927
Version 0.1.10
Version 0.1.11
Version 0.1.12
Version 0.1.13
Version 0.1.14
Version 0.1.15
Version 0.1.16
Version 0.1.17
Version 0.1.18
Version 0.1.19
Version 0.1.1
Version 0.1.20
Version 0.1.21
Version 0.1.22
Version 0.1.23
Version 0.1.24
Version 0.1.25
Version 0.1.26
Version 0.1.27
Version 0.1.28
Version 0.1.29
Version 0.1.2
Version 0.1.30
Version 0.1.3
Version 0.1.4
Version 0.1.5
Version 0.1.6
Version 0.1.7
Version 0.1.8
Version 0.1.9
Version 0.1
Version 0.2.0
Version 0.2.10
Version 0.2.1
Version 0.2.2
Version 0.2.3
Version 0.2.4
Version 0.2.5
Version 0.2.6
Version 0.2.7
Version 0.2.8
Version 0.2.9
Version 0.3.0
Version 0.3.10
Version 0.3.11
Version 0.3.12
Version 0.3.13
Version 0.3.14
Version 0.3.15
Version 0.3.16
Version 0.3.17
Version 0.3.1
Version 0.3.20
Version 0.3.21
Version 0.3.2
Version 0.3.3
Version 0.3.4
Version 0.3.5
Version 0.3.6
Version 0.3.7
Version 0.3.8
Version 0.3.9
Version 0.4.0
Version 0.4.10
Version 0.4.11
Version 0.4.12
Version 0.4.13
Version 0.4.14
Version 0.4.15
Version 0.4.16
Version 0.4.17
Version 0.4.18
Version 0.4.19
Version 0.4.1
Version 0.4.2.1
Version 0.4.2.2
Version 0.4.2.3
Version 0.4.2
Version 0.4.3
Version 0.4.4
Version 0.4.5
Version 0.4.6
Version 0.4.7
Version 0.4.8
Version 0.4.9
Version 0.5.0
Version 0.5.1
Version 0.5.2
Version 0.5.3
Version 0.5.4
Version 0.5.5
Version 0.5.6
Version 0.5.7
Version 0.6.0
Version 0.6.1
Version 0.6.2
Version 0.6.3
Version 0.6.4
Version 0.6.5

References (16)

Source: cve@mitre.org
Vendor Advisory
Source: cve@mitre.org
Patch
Source: cve@mitre.org
Vendor Advisory
Source: cve@mitre.org
ExploitPatch
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitPatch
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.