LinuxSecurity.com
Share your story
The central voice for Linux and Open Source security news
Home News Topics Advisories HOWTOs Features Newsletters About Register

Welcome!
Sign up!
EnGarde Community
Login
Polls
What is the most important Linux security technology?
 
Advisories
Community
Linux Events
Linux User Groups
Link to Us
Security Center
Book Reviews
Security Dictionary
Security Tips
SELinux
White Papers
Featured Blogs
All About Linux
DanWalsh LiveJournal
Securitydistro
Latest Newsletters
Linux Security Week: February 6th, 2012
Linux Advisory Watch: February 3rd, 2012
Subscribe
LinuxSecurity Newsletters
E-mail:
Choose Lists:
About our Newsletters
RSS Feeds
Get the LinuxSecurity news you want faster with RSS
Powered By

  
Fedora Core 5 Update: gdm-2.14.11-1.fc5 Print E-mail
User Rating:      How can I rate this item?
Posted by Benjamin D. Thomas   
Fedora Fix for a recently reported security issue that has ID CVE-2006-6105. This fixes a problem where a user can enter strings like "%08x" into the gdmchooser "Add"j host button and print out memory.
---------------------------------------------------------------------
Fedora Update Notification
FEDORA-2006-1467
2006-12-15
---------------------------------------------------------------------

Product     : Fedora Core 5
Name        : gdm
Version     : 2.14.11
Release     : 1.fc5
Summary     : The GNOME Display Manager.
Description :
Gdm (the GNOME Display Manager) is a highly configurable
reimplementation of xdm, the X Display Manager. Gdm allows you to log
into your system with the X Window System running and supports running
several different X sessions on your local machine at the same time.

---------------------------------------------------------------------
Update Information:

Fix for a recently reported security issue that has ID
CVE-2006-6105.  This fixes a problem where a user can
enter strings like "%08x" into the gdmchooser "Add"j
host button and print out memory. 
---------------------------------------------------------------------
* Fri Dec 15 2006 Matthias Clasen  - 1:2.14.11-1
- Update to 2.14.11, which fixes CVE-2006-6105
- Drop upstreamed patches
* Thu Jun  8 2006 Ray Strode  - 1:2.14.10-1
- Update to 2.14.10
* Thu Jun  8 2006 Ray Strode  - 1:2.14.9-1
- Update to 2.14.9
- Fixes autologin problem (bug 195014).
* Thu Jun  8 2006 Ray Strode  - 1:2.14.8-1
- Update to 2.14.8
- Fixes CVE-2006-2452 (bug 343476).
* Wed Jun  7 2006 Ray Strode  - 1:2.14.4-1.fc5.3
- Add BuildRequires on xorg-x11-server-Xorg (bug 194295)
* Tue Jun  6 2006 Matthias Clasen  - 1:2.14.4-1.fc.2
- Require system-logos, not fedora-logos
- Add missing BuildRequires

---------------------------------------------------------------------
This update can be downloaded from:
    http://download.fedora.redhat.com/pub/fedora/linux/core/updates/5/

5e88148d3c4a3f6559fa38d31cb7fde6ce35621c  SRPMS/gdm-2.14.11-1.fc5.src.rpm
5e88148d3c4a3f6559fa38d31cb7fde6ce35621c  noarch/gdm-2.14.11-1.fc5.src.rpm
ef7241475d123ab982add4c79cc638ec7041e36c  ppc/gdm-2.14.11-1.fc5.ppc.rpm
055bcfcd9a9e35842db1b7f12ce951442003498b  ppc/debug/gdm-debuginfo-2.14.11-1.fc5.ppc.rpm
318baf29dfaa15b838af076b26452fcf92f061ec  x86_64/gdm-2.14.11-1.fc5.x86_64.rpm
719f0e00272f843cd62122eda1d2669454a04669  x86_64/debug/gdm-debuginfo-2.14.11-1.fc5.x86_64.rpm
1537e747a82c582081ccac330ad99428069fa797  i386/gdm-2.14.11-1.fc5.i386.rpm
b3a40b2f38fd33cf237f7f2359cd6db67a614983  i386/debug/gdm-debuginfo-2.14.11-1.fc5.i386.rpm

This update can be installed with the 'yum' update program.  Use 'yum update
package-name' at the command line.  For more information, refer to 'Managing
Software with yum,' available at http://fedora.redhat.com/docs/yum/.
---------------------------------------------------------------------

_______________________________________________
Fedora-package-announce mailing list
Fedora-package-announce@redhat.com
http://www.redhat.com/mailman/listinfo/fedora-package-announce
 
< Prev   Next >
    
Partner

 

Latest Features
Password guessing with Medusa 2.0
Password guessing as an attack vector
Squid and Digest Authentication
Squid and Basic Authentication
Demystifying the Chinese Hacking Industry: Earning 6 Million a Night
Free Online security course (LearnSIA) - A Call for Help
What You Need to Know About Linux Rootkits
Review: A Practical Guide to Fedora and Red Hat Enterprise Linux - Fifth Edition
Using the sec-wall Security Proxy
sec-wall: Open Source Security Proxy
Yesterday's Edition
Hackers Hit Apple Supplier Foxconn, Leak Usernames And Passwords
Hackers Mug Google's Wallet App on Rooted Android Devices
Google Chrome will no longer check for revoked SSL certificates online
Have Your Users' Passwords Already Been Hacked?
DDoS Tools Flourish, Give Attackers Many Options
Partner Sponsor

Community | HOWTOs | Blogs | Features | Book Reviews | Networking
 Security Projects |  Latest News |  Newsletters |  SELinux |  Privacy |  Home
 Hardening |   About Us |   Advertise |   Legal Notice |   RSS |   Guardian Digital
(c)Copyright 2012 Guardian Digital, Inc. All rights reserved.