CVE-2003-0549: Medium severity Gnome gdm vulnerability
Published Aug 22, 2003
·Updated
The X Display Manager Control Protocol (XDMCP) support for GDM before 2.4.1.6 allows attackers to cause a denial of service (daemon crash) via a short authorization key name.
Affected Software
22 affected components
Gnome gdm=2.2.0
Gnome gdm=2.4.1
Gnome gdm=2.4.1.1
Gnome gdm=2.4.1.2
Gnome gdm=2.4.1.3
Gnome gdm=2.4.1.4
Gnome gdm=2.4.1.5
Gnome gdm=2.4.1.6
redhat Kdebase=2.0_beta2.45
redhat Kdebase=2.0_beta2.45
redhat Kdebase=2.2.3.1.20
redhat Kdebase=2.2.3.1.20
redhat Kdebase=2.2.3.1.22
redhat Kdebase=2.4.0.7.13
redhat Kdebase=2.4.1.3.5
redhat Enterprise Linux=2.1
redhat Enterprise Linux=2.1
redhat Enterprise Linux=2.1
redhat Enterprise Linux=2.1
redhat Enterprise Linux=2.1
redhat Enterprise Linux=2.1
redhat Linux Advanced Workstation=2.1
Remediation
Patch Available
Patch Available
Event History
Aug 22, 2003
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Aug 27, 2003
Data Sourced
via NVD·04:00 AM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2003-0549?
CVE-2003-0549 is classified as a denial of service vulnerability.
2
How do I fix CVE-2003-0549?
To fix CVE-2003-0549, upgrade to GDM version 2.4.1.6 or later.
3
What software is affected by CVE-2003-0549?
CVE-2003-0549 affects GDM versions earlier than 2.4.1.6.
4
What type of attack does CVE-2003-0549 exploit?
CVE-2003-0549 exploits the X Display Manager Control Protocol (XDMCP) support for causing daemon crashes.
5
Is CVE-2003-0549 a critical vulnerability?
CVE-2003-0549 is not considered critical but can lead to service interruption.