oss-sec mailing list archives

Re: Re: lightdm issues


From: Josh Bressers <bressers () redhat com>
Date: Fri, 9 Sep 2011 13:20:34 -0400 (EDT)

Here you go:

CVE-2011-3349 lightdm files written as root to user-controlled folders

Thanks.

-- 
    JB

----- Original Message -----
On ven., 2011-08-26 at 14:51 +1000, Robert Ancell wrote:
Hi Sebastian,

Thanks for doing this review, this issue is now being tracked in the
LightDM issue tracker:
https://bugs.launchpad.net/lightdm/+bug/834079

Could a CVE be assigned? Sebastian didn't really asked for it but as
it
can indeed be used to overwrite root-owned files (with non-controlled
content afaict) I guess it deserves ones?

Regards,
--
Yves-Alexis


Current thread: