[11548] in bugtraq

home help back first fref pref prev next nref lref last post

Re: [RHSA-1999:030-01] Buffer overflow in cron daemon

daemon@ATHENA.MIT.EDU (Olaf Kirch)
Sat Aug 28 09:16:49 1999

Mime-Version: 1.0
Content-Type: text/plain; charset=us-ascii
Message-Id:  <19990826100534.A24174@monad.swb.de>
Date:         Thu, 26 Aug 1999 10:05:34 +0200
Reply-To: Olaf Kirch <okir@MONAD.SWB.DE>
From: Olaf Kirch <okir@MONAD.SWB.DE>
X-To:         bugtraq@securityfocus.com, linux-security@redhat.com
To: BUGTRAQ@SECURITYFOCUS.COM
In-Reply-To:  <19990825211720.A3016@xenomorph.redhat.com>; from Bill Nottingham
              on Wed, Aug 25, 1999 at 09:17:20PM -0400

On Wed, Aug 25, 1999 at 09:17:20PM -0400, Bill Nottingham wrote:
> A buffer overflow exists in crond, the cron daemon. This
> could allow local users to gain privilege.

FYI, Caldera OpenLinux isn't vulnerable to this.
This problem was first discovered two years ago by someone at Debian.

Olaf
--
Olaf Kirch         |  --- o --- Nous sommes du soleil we love when we play
okir@monad.swb.de  |    / | \   sol.dhoop.naytheet.ah kin.ir.samse.qurax
okir@caldera.de    +-------------------- Why Not?! -----------------------
         UNIX, n.: Spanish manufacturer of fire extinguishers.

home help back first fref pref prev next nref lref last post