VendorsCanonicalaccountsserviceall versions
Vulnerabilities

Canonical Accountsservice

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

4CVEs
CVE-2023-3297
In Ubuntu's accountsservice an unprivileged local attacker can trigger a use-after-free vulnerability in accountsservice by sending a D-Bus message to the accounts-daemon process.
Published 2023-09-01 · Modified
8.1EPSS 0.003
CVE-2021-3939
Free of static data in accountsservice
Published 2021-11-17 · Modified
7.8EPSS 0.004
CVE-2022-1804
Accountsservice incorrectly drops privileges
Published 2025-03-25 · Analyzed
5.5EPSS 0.001
CVE-2011-4406
The Ubuntu AccountsService package before 0.6.14-1git1ubuntu1.1 does not properly drop privileges when changing language settings, which allows local users to modify arbitrary files via unspecified vectors.
Published 2014-04-16 · Modified
3.6EPSS 0.004