gdm2 r5102 - in branches/gnome-2-14: . daemon gui gui/greeter



Author: bcameron
Date: 2007-07-30 20:41:59 +0100 (Mon, 30 Jul 2007)
New Revision: 5102
ViewCVS link: http://svn.gnome.org/viewcvs/gdm2?rev=5102&view=rev

Modified:
   branches/gnome-2-14/ChangeLog
   branches/gnome-2-14/daemon/gdm.c
   branches/gnome-2-14/daemon/gdmconfig.c
   branches/gnome-2-14/gui/gdmconfig.c
   branches/gnome-2-14/gui/gdmflexiserver.c
   branches/gnome-2-14/gui/greeter/greeter_item_ulist.c
Log:
2007-07-30  Brian Cameron  <brian cameron sun com>

        This fixes CVE-2007-3381 - a denial of service attack where
        the user can crash the GDM daemon with a carefully crafted GDM
        sockets command and cause GDM to stop managing future displays.

        * daemon/gdm.c, daemon/gdmconfig.c, gui/gdmconfig.c,
          gui/gdmflexiserver.c, gui/gdmconfig.c: Fix g_strsplit calls
          so that NULL return codes are better handled.





[Date Prev][Date Next]   [Thread Prev][Thread Next]   [Thread Index] [Date Index] [Author Index]