Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2013-1213

Опубликовано: 05 сент. 2013
Источник: oracle-oval
Платформа: Oracle Linux 5

Описание

ELSA-2013-1213: gdm security update (IMPORTANT)

gdm [2.16.0-59.0.1.el5_9.1]

  • Fix gdmconfig memory leaks [orabug 12734629]

[2.16.0-59.1]

  • Don't try to pre-create directories that are internal implementation details of X. Resolves: #997619 CVE-2013-4169

initscripts [8.45.42-2.0.1.el5_9.1]

  • Do not rename eth devices. Orabug 14266688. Apply upstream patches: 0001-Remove-reference-to-rename_device.patch 0002-rename_device-dequote-DEVICE-eth0.patch 0003-dont_try_to_rename_devices.patch
  • change the ifup-eth and ifdown-eth script to use default leases file of dhclient. [Orabug 12434590]
  • Update oracle-enterprise.patch to do detection on /etc/oracle-release and /etc/enterprise-release
  • Patch x86_64 sysctl.conf as well as default sysctl.conf
  • Patch sysctl.conf to default rp_filter to loose reverse path filtering (has no effect for pre-2.6.32 kernels) [orabug 10286227]
  • Move hwclock into udev rules
  • Update oracle-enterprise.patch to fix RedHat references in arch specific sysctl.conf files in source tarball
  • Add oracle-enterprise.patch and update specfile
  • Don't attempt to re-enslave already-enslaved devices (#455537) (pknirsch@redhat.com)

[8.45.42-2.1]

  • create /tmp/.X11-unix in rc.sysinit (#997622, CVE-2013-4169)

[8.45.42-2]

  • added missing '-p p' for kpartx in netfs (#844671)

Обновленные пакеты

Oracle Linux 5

Oracle Linux ia64

gdm

2.16.0-59.0.1.el5_9.1

gdm-docs

2.16.0-59.0.1.el5_9.1

initscripts

8.45.42-2.0.1.el5_9.1

Oracle Linux x86_64

gdm

2.16.0-59.0.1.el5_9.1

gdm-docs

2.16.0-59.0.1.el5_9.1

initscripts

8.45.42-2.0.1.el5_9.1

Oracle Linux i386

gdm

2.16.0-59.0.1.el5_9.1

gdm-docs

2.16.0-59.0.1.el5_9.1

initscripts

8.45.42-2.0.1.el5_9.1

Связанные CVE

Связанные уязвимости

ubuntu
почти 12 лет назад

GNOME Display Manager (gdm) before 2.21.1 allows local users to change permissions of arbitrary directories via a symlink attack on /tmp/.X11-unix/.

redhat
почти 12 лет назад

GNOME Display Manager (gdm) before 2.21.1 allows local users to change permissions of arbitrary directories via a symlink attack on /tmp/.X11-unix/.

nvd
почти 12 лет назад

GNOME Display Manager (gdm) before 2.21.1 allows local users to change permissions of arbitrary directories via a symlink attack on /tmp/.X11-unix/.

debian
почти 12 лет назад

GNOME Display Manager (gdm) before 2.21.1 allows local users to change ...

github
больше 3 лет назад

GNOME Display Manager (gdm) before 2.21.1 allows local users to change permissions of arbitrary directories via a symlink attack on /tmp/.X11-unix/.