{ "schema_version": "1.4.0", "id": "GHSA-vgg4-r596-q6v8", "modified": "2025-04-11T03:46:26Z", "published": "2022-05-17T01:59:35Z", "aliases": [ "CVE-2011-1842" ], "details": "dbus_backend/lsd.py in the D-Bus backend in language-selector before 0.6.7 does not validate the arguments to the (1) SetSystemDefaultLangEnv and (2) SetSystemDefaultLanguageEnv functions, which allows local users to gain privileges via shell metacharacters in a string argument, a different vulnerability than CVE-2011-0729.", "severity": [], "affected": [], "references": [ { "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2011-1842" }, { "type": "WEB", "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/67255" }, { "type": "WEB", "url": "https://launchpad.net/bugs/764397" }, { "type": "WEB", "url": "https://launchpad.net/ubuntu/+source/language-selector/0.6.7" }, { "type": "WEB", "url": "http://secunia.com/advisories/44214" }, { "type": "WEB", "url": "http://www.securityfocus.com/bid/47502" }, { "type": "WEB", "url": "http://www.ubuntu.com/usn/USN-1115-1" }, { "type": "WEB", "url": "http://www.ubuntuupdates.org/packages/show/307975" }, { "type": "WEB", "url": "http://www.vupen.com/english/advisories/2011/1032" } ], "database_specific": { "cwe_ids": [ "CWE-20" ], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2011-05-03T00:55:00Z" } }