This script is Copyright (C) 2011-2013 Tenable Network Security, Inc.
The remote FreeBSD host is missing a security-related update.
Sebastian Krahmer reports :
It was discovered that the GNOME Display Manager (gdm) cleared the
cache directory, which is owned by an unprivileged user, with the
privileges of the root user. A race condition exists in gdm where a
local user could take advantage of this by writing to the cache
directory between ending the session and the signal to clean up the
session, which could lead to the execution of arbitrary code as the
See also :
Update the affected package.
Risk factor :
Medium / CVSS Base Score : 6.9