[ubuntu/natty-security] gdm-guest-session 0.24ubuntu0.1 (Accepted)
Marc Deslauriers
marc.deslauriers at ubuntu.com
Tue Mar 13 13:33:36 UTC 2012
gdm-guest-session (0.24ubuntu0.1) natty-security; urgency=low
* SECURITY UPDATE: Guest session arbitrary file deletion (LP: #953044)
- gdm/guest-session-cleanup.sh: Use find/xargs with 0 separators
instead of spaces. Thanks to Martin Pitt for the fix.
- Thanks to Ryan Lortie for reporting this issue.
- CVE-2012-0943
Date: Mon, 12 Mar 2012 11:12:10 -0400
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Maintainer: Martin Pitt <martin.pitt at ubuntu.com>
https://launchpad.net/ubuntu/natty/+source/gdm-guest-session/0.24ubuntu0.1
-------------- next part --------------
Format: 1.8
Date: Mon, 12 Mar 2012 11:12:10 -0400
Source: gdm-guest-session
Binary: gdm-guest-session
Architecture: source
Version: 0.24ubuntu0.1
Distribution: natty-security
Urgency: low
Maintainer: Martin Pitt <martin.pitt at ubuntu.com>
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Description:
gdm-guest-session - gdm extension for guest session
Launchpad-Bugs-Fixed: 953044
Changes:
gdm-guest-session (0.24ubuntu0.1) natty-security; urgency=low
.
* SECURITY UPDATE: Guest session arbitrary file deletion (LP: #953044)
- gdm/guest-session-cleanup.sh: Use find/xargs with 0 separators
instead of spaces. Thanks to Martin Pitt for the fix.
- Thanks to Ryan Lortie for reporting this issue.
- CVE-2012-0943
Checksums-Sha1:
fd0907f8f8a85a4c61d688e456be54d5b8b92bd2 1433 gdm-guest-session_0.24ubuntu0.1.dsc
a7eee4c2fd6ed0e1189d375d8c4f37d279636dcb 15414 gdm-guest-session_0.24ubuntu0.1.tar.gz
Checksums-Sha256:
ed344d5f3f99422632e5808d77edda08c23f00fc557fdb87123096bde6b5c428 1433 gdm-guest-session_0.24ubuntu0.1.dsc
acac0321cda20857a8fedadc982f062dc51e69f053a49048730a867e3b896c93 15414 gdm-guest-session_0.24ubuntu0.1.tar.gz
Files:
df3ec3cdf21d3152830e9bfb8de07b8c 1433 gnome optional gdm-guest-session_0.24ubuntu0.1.dsc
645b46b3294992512489648460586fac 15414 gnome optional gdm-guest-session_0.24ubuntu0.1.tar.gz
More information about the Natty-changes
mailing list