Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
Date: Wed, 9 May 2007 15:29:12 -0500 Reply-To: Connie SiehSender: Security Errata for Scientific Linux From: Connie Sieh Subject: Security ERRATA for SL4 gdm i386/x86_64 Comments: To: scientific Synopsis: Low: gdm security and bug fix update Issue date: 2007-05-01 CVE Names: CVE-2006-1057 Marcus Meissner discovered a race condition issue in the way Gdm modifies the permissions on the.ICEauthority file. A local attacker could exploit this flaw to gain privileges. Due to the nature of the flaw, however, a successful exploitation was unlikely. (CVE-2006-1057) SRPMS: gdm-2.6.0.5-7.rhel4.15.src.rpm i386: gdm-2.6.0.5-7.rhel4.15.i386.rpm x86_64: gdm-2.6.0.5-7.rhel4.15.x86_64.rpm Dependencies: i386: audit-1.0.15-3.EL4.i386.rpm audit-libs-devel-1.0.15-3.EL4.i386.rpm audit-libs-1.0.15-3.EL4.i386.rpm x86_64: audit-1.0.15-3.EL4.x86_64.rpm audit-libs-1.0.15-3.EL4.x86_64.rpm audit-libs-1.0.15-3.EL4.i386.rpm audit-libs-devel-1.0.15-3.EL4.x86_64.rpm -Connie Sieh -Tro7 Dawson