Description
Buffer overflow in Vixie cron 3.0.1-56 and earlier could allow a local attacker to gain additional privileges via a long username (> 20 characters).
Affected products
- paul_vixie / vixie_cron3.0.1.56
References
- MISChttp://www-1.ibm.com/support/search.wss?rs=0&q=IY17261&apar=only
- MISChttp://www.osvdb.org/5583
- MISChttp://www.linux-mandrake.com/en/security/2001/MDKSA-2001-022.php3
- MISChttp://archives.neohapsis.com/archives/linux/immunix/2001-q1/0066.html
- MISChttp://www.redhat.com/support/errata/RHSA-2001-014.html
- MISChttps://exchange.xforce.ibmcloud.com/vulnerabilities/6098
- MISChttp://archives.neohapsis.com/archives/bugtraq/2001-02/0197.html
- MISChttp://www-1.ibm.com/support/search.wss?rs=0&q=IY17048&apar=only