Low severity3.3NVD Advisory· Published Nov 11, 2020· Updated Jun 17, 2026
CVE-2020-16126
CVE-2020-16126
Description
An Ubuntu-specific modification to AccountsService in versions before 0.6.55-0ubuntu13.2, among other earlier versions, improperly dropped the ruid, allowing untrusted users to send signals to AccountService, thus stopping it from handling D-Bus messages in a timely fashion.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:freedesktop:accountsservice:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:freedesktop:accountsservice:*:*:*:*:*:*:*:*range: <0.6.55
- (no CPE)range: 0.6.35-0ubuntu7.3
- Range: <0.6.55-0ubuntu13.2
Patches
Vulnerability mechanics
References
1- securitylab.github.com/advisories/GHSL-2020-187-accountsservice-drop-privs-DOSnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.