Oval Definition:oval:com.redhat.rhsa:def:20070286
Revision Date:2007-05-01Version:637
Title:RHSA-2007:0286: gdm security and bug fix update (Low)
Description:Gdm (the GNOME Display Manager) is a highly configurable reimplementation of xdm, the X Display Manager. Gdm allows you to log into your system with the X Window System running and supports running several different X sessions on your local machine at the same time.

  • Marcus Meissner discovered a race condition issue in the way Gdm modifies the permissions on the .ICEauthority file. A local attacker could exploit this flaw to gain privileges. Due to the nature of the flaw, however, a successful exploitation was unlikely. (CVE-2006-1057)

    This erratum also includes a bug fix to correct the pam configuration for the audit system.

    All users of gdm should upgrade to this updated package, which contains backported patches to resolve these issues.
  • Family:unixClass:patch
    Status:Reference(s):CVE-2006-1057
    RHSA-2007:0286
    RHSA-2007:0286-02
    RHSA-2007:0286-02
    Platform(s):Red Hat Enterprise Linux 4
    Product(s):
    Definition Synopsis
  • Red Hat Enterprise Linux must be installed
  • OR Package Information
  • Red Hat Enterprise Linux 4 is installed
  • AND gdm is earlier than 1:2.6.0.5-7.rhel4.15
  • AND gdm is signed with Red Hat redhatrelease2 key
  • BACK