CVE-2011-0729: Ubuntu Language-Selector
High severity, CVSS 7.2. EPSS: 0.3% chance of exploitation in the next 30 days.
dbus_backend/ls-dbus-backend in the D-Bus backend in language-selector before 0.6.7 does not restrict access on the basis of a PolicyKit check result, which allows local users to modify the /etc/default/locale and /etc/environment files via a (1) SetSystemDefaultLangEnv or (2) SetSystemDefaultLanguageEnv call.
Affected products
- Ubuntu Language-Selector: up to and including 0.6.6; version 0.0+baz20050531 only; version 0.0+baz20050609 only; version 0.0+baz20050614 only; version 0.0+baz20050808 only; version 0.0+baz20050811 only; …
Published 2011-04-29. Last modified 2026-06-16.