vicious-extensions r267 - branches/gnome-2-14



Author: bcameron
Date: 2007-07-30 20:45:08 +0100 (Mon, 30 Jul 2007)
New Revision: 267
ViewCVS link: http://svn.gnome.org/viewcvs/vicious-extensions?rev=267&view=rev

Modified:
   branches/gnome-2-14/ChangeLog
   branches/gnome-2-14/ve-gnome.c
   branches/gnome-2-14/ve-misc.c
   branches/gnome-2-14/ve-nongnome.c
Log:
2007-07-30  Brian Cameron  <brian cameron sun com>

        This fixes CVE-2007-3381 - a denial of service attack where
        the user can crash the GDM daemon with a carefully crafted GDM
        sockets command and cause GDM to stop managing future displays.

        * ve-misc.c, ve-gnome.c, ve-nongnome.c: Fix g_strsplit
          calls so that NULL return codes are better handled.





[Date Prev][Date Next]   [Thread Prev][Thread Next]   [Thread Index] [Date Index] [Author Index]