CVE-2017-12164 gdm unlock issue



Anyone shipping GDM 3.24.1 or later should consider upgrading to 3.24.3
(or 3.26.0) which fixes a security hole. namely, if the user enables
autologin, then screen lock can be bypassed by trying to initiate user
switching.

---------- Forwarded message ---------
From: Ray Strode <install-module master gnome org>
Date: Tue, Sep 12, 2017 at 11:47 AM
Subject: gdm 3.24.3
To: FTP Releases <ftp-release-list gnome org>


About gdm
=========

Display manager and login screen

News
====

- Fix for unauthenticated unlock when autologin is enabled (CVE-2017-12164)
- Fix fallback session name sorting
- Translation updates



Download
========
https://download.gnome.org/sources/gdm/3.24/gdm-3.24.3.tar.xz (1.06M)
  sha256sum: c07bb3fdde46deb0fdaf12bdfbce0365806dd4df4573783d7b8301d2a8ddbdf1



[Date Prev][Date Next]   [Thread Prev][Thread Next]   [Thread Index] [Date Index] [Author Index]