[ldm] [CVE-2008-1293] information disclosure
Bug #227295 reported by
disabled.user
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
ldm (Debian) |
Fix Released
|
Unknown
|
|||
ldm (Ubuntu) |
Fix Released
|
Medium
|
Oliver Grawert | ||
Dapper |
Fix Released
|
Medium
|
Oliver Grawert | ||
Feisty |
Fix Released
|
Medium
|
Oliver Grawert | ||
Gutsy |
Fix Released
|
Medium
|
Oliver Grawert |
Bug Description
Binary package hint: ldm
References:
DSA-1561-1 (http://
Quoting:
"Christian Herzog discovered that within the Linux Terminal Server Project,
it was possible to connect to X on any LTSP client from any host on the
network, making client windows and keystrokes visible to that host."
CVE References
Changed in ldm: | |
status: | Unknown → Fix Released |
Changed in ldm: | |
assignee: | nobody → keescook |
status: | Confirmed → In Progress |
To post a comment you must log in.
this is fixed in hardy and intrepid