[19193] in bugtraq
Re: [2] vixie cron possible local root compromise
daemon@ATHENA.MIT.EDU (Mark van Reijn)
Tue Feb 13 18:21:19 2001
Mime-Version: 1.0
Content-Transfer-Encoding: 7bit
Message-Id: <MWMail.aqinmttj@host.none>
Date: Tue, 13 Feb 2001 20:52:48 +0100
Reply-To: Mark van Reijn <mark@EDUP.TUDELFT.NL>
From: Mark van Reijn <mark@EDUP.TUDELFT.NL>
To: BUGTRAQ@SECURITYFOCUS.COM
You are so right!! Must have been very late or something...
I've checked whether it actually works...nope!
Crontab doesn't get more than 20 chars but somehow it copies them twice?
Strange
Mark
Mate Wierdl <mw@thales.memphis.edu> wrote on 13-2-01 18:23:10:
>
>On Mon, Feb 12, 2001 at 10:14:00PM +0100, Mark van Reijn wrote:
>> Hmm, doesn't do anything weird/wrong on my RH6.2 server:
>>
>> [aaaaaaaaaabbbbbbbbbbcccccccccc@obelix mark]$ crontab -e
>> no crontab for aaaaaaaaaabbbbbbbbbbaaaaaaaaaabbbbbbbbbbaaaaaaaaaab - using an empty
one
>
>I thought it is weird that you are aaaaaaaaaabbbbbbbbbbcccccccccc, and
>cron is talking about user
>
>aaaaaaaaaabbbbbbbbbbaaaaaaaaaabbbbbbbbbbaaaaaaaaaab
>
>On the other hand, on RH Linux 7.0 with vixie-cron-3.0.1-56, I get
>
>[abcabcabcabcabcabcabcabcabcabc@thales ~]$ crontab -e
>Segmentation fault
>
>
>Mate
>---
>Mate Wierdl | Dept. of Math. Sciences | University of Memphis
--
___________________________
Mark van Reijn
mark@edup.tudelft.nl
___________________________
"Because light travels faster than sound, most people appear to be intelligent,
until you hear them speak"