First published: Wed Mar 16 2011(Updated: )
GNOME Display Manager (gdm) 2.x before 2.32.1 allows local users to change the ownership of arbitrary files via a symlink attack on a (1) dmrc or (2) face icon file under /var/cache/gdm/.
Credit: security@ubuntu.com
Affected Software | Affected Version | How to fix |
---|---|---|
GNOME gdm | =2.5 | |
GNOME gdm | =2.2 | |
GNOME gdm | =2.30 | |
GNOME gdm | =2.25 | |
GNOME gdm | =2.19 | |
GNOME gdm | =2.22 | |
GNOME gdm | =2.16 | |
GNOME gdm | =2.13 | |
GNOME gdm | =2.15 | |
GNOME gdm | =2.4 | |
GNOME gdm | =2.21 | |
GNOME gdm | =2.27 | |
GNOME gdm | =2.3 | |
GNOME gdm | =2.23 | |
GNOME gdm | =2.20 | |
GNOME gdm | =2.6 | |
GNOME gdm | =2.8 | |
GNOME gdm | =2.26 | |
GNOME gdm | =2.31 | |
GNOME gdm | =2.28 | |
GNOME gdm | =2.18 | |
GNOME gdm | =2.14 | |
GNOME gdm | =2.29 | |
GNOME gdm | =2.17 | |
GNOME gdm | =2.0 | |
GNOME gdm | =2.24 | |
GNOME gdm | =2.32 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.