SciLinux: CVE-2006-1057 SL4 gdm i386/x86_64
Summary
Date: Wed, 9 May 2007 15:29:12 -0500Reply-To: Connie SiehSender: Security Errata for Scientific Linux From: Connie Sieh Subject: Security ERRATA for SL4 gdm i386/x86_64Comments: To: scientific Synopsis: Low: gdm security and bug fix updateIssue date: 2007-05-01CVE Names: CVE-2006-1057Marcus Meissner discovered a race condition issue in the way Gdm modifiesthe permissions on the .ICEauthority file. A local attacker could exploitthis flaw to gain privileges. Due to the nature of the flaw, however, asuccessful exploitation was unlikely. (CVE-2006-1057)SRPMS: gdm-2.6.0.5-7.rhel4.15.src.rpmi386: gdm-2.6.0.5-7.rhel4.15.i386.rpmx86_64: gdm-2.6.0.5-7.rhel4.15.x86_64.rpmDependencies:i386: audit-1.0.15-3.EL4.i386.rpm audit-libs-devel-1.0.15-3.EL4.i386.rpm audit-libs-1.0.15-3.EL4.i386.rpmx86_64: audit-1.0.15-3.EL4.x86_64.rpm audit-libs-1.0.15-3.EL4.x86_64.rpm audit-libs-1.0.15-3.EL4.i386.rpm audit-libs-devel-1.0.15-3.EL4.x86_64.rpm-Connie Sieh-Tro7 Dawson