Bug#620184: gdm 2.32.1 released: Upstream fixed vulnerable package

C. Petersen zttrbck at lavabit.com
Wed Mar 30 19:56:43 UTC 2011


Package: gdm
Version: 2.20.11-2
Severity: important

Upstream fixed with the 2.32.1 release a local exploitable bug  (which
would give root)
in the package:
https://mail.gnome.org/archives/gnome-announce-list/2011-March/msg00107.html

CVE-2011-0727 was assigned for this.

As I do understand it, all packages <2.32.1 are affected.


-- System Information:
Debian Release: wheezy/sid
  APT prefers unstable
  APT policy: (500, 'unstable')
Architecture: amd64 (x86_64)

Kernel: Linux 2.6.37-2-amd64 (SMP w/2 CPU cores)
Locale: LANG=de_DE.UTF-8, LC_CTYPE=de_DE.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/dash






More information about the pkg-gnome-maintainers mailing list