Show filters
8 Total Results
Displaying 1-8 of 8
Sort by:
Attacker Value
Unknown

CVE-2019-9706

Disclosure Date: March 12, 2019 (last updated November 27, 2024)
Vixie Cron before the 3.0pl1-133 Debian package allows local users to cause a denial of service (use-after-free and daemon crash) because of a force_rescan_user error.
Attacker Value
Unknown

CVE-2010-0792

Disclosure Date: March 05, 2010 (last updated October 04, 2023)
fcrontab in fcron before 3.0.5 allows local users to read arbitrary files via a symlink attack on an unspecified file.
0
Attacker Value
Unknown

CVE-2006-0575

Disclosure Date: February 07, 2006 (last updated February 22, 2025)
convert-fcrontab in Fcron 2.9.5 and 3.0.0 allows remote attackers to create or overwrite arbitrary files via ".." sequences and a symlink attack on the temporary file that is used during conversion.
0
Attacker Value
Unknown

CVE-2006-0539

Disclosure Date: February 04, 2006 (last updated February 22, 2025)
The convert-fcrontab program in fcron 3.0.0 might allow local users to gain privileges via a long command-line argument, which causes Linux glibc to report heap memory corruption, possibly because a strcpy in the strdup2 function can "overwrite some data."
0
Attacker Value
Unknown

CVE-2000-1096

Disclosure Date: January 09, 2001 (last updated February 22, 2025)
crontab by Paul Vixie uses predictable file names for a temporary file and does not properly ensure that the file is owned by the user executing the crontab -e command, which allows local users with write access to the crontab spool directory to execute arbitrary commands by creating world-writeable temporary files and modifying them while the victim is editing the file.
0
Attacker Value
Unknown

CVE-1999-0769

Disclosure Date: August 25, 1999 (last updated February 22, 2025)
Vixie Cron on Linux systems allows local users to set parameters of sendmail commands via the MAILTO environmental variable.
0
Attacker Value
Unknown

CVE-1999-0872

Disclosure Date: August 25, 1999 (last updated February 22, 2025)
Buffer overflow in Vixie cron allows local users to gain root access via a long MAILTO environment variable in a crontab file.
0
Attacker Value
Unknown

CVE-1999-0297

Disclosure Date: December 12, 1996 (last updated February 22, 2025)
Buffer overflow in Vixie Cron library up to version 3.0 allows local users to obtain root access via a long environmental variable.
0