Vulnerability CVE-2023-3297


Published: 2023-09-01

Description:
In Ubuntu's accountsservice an unprivileged local attacker can trigger a use-after-free vulnerability in accountsservice by sending a D-Bus message to the accounts-daemon process.

 References:
https://securitylab.github.com/advisories/GHSL-2023-139_accountsservice/
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-3297
https://bugs.launchpad.net/ubuntu/+source/accountsservice/+bug/2024182
https://ubuntu.com/security/notices/USN-6190-1

Copyright 2026, cxsecurity.com

 

Back to Top