Bugtraq mailing list archives

Re: [2] vixie cron possible local root compromise


From: Mark van Reijn <mark () EDUP TUDELFT NL>
Date: Tue, 13 Feb 2001 20:52:48 +0100

You are so right!! Must have been very late or something...
I've checked whether it actually works...nope!
Crontab doesn't get more than 20 chars but somehow it copies them twice?
Strange

Mark

Mate Wierdl <mw () thales memphis edu> wrote on 13-2-01 18:23:10:

On Mon, Feb 12, 2001 at 10:14:00PM +0100, Mark van Reijn wrote:
Hmm, doesn't do anything weird/wrong on my RH6.2 server:

[aaaaaaaaaabbbbbbbbbbcccccccccc@obelix mark]$ crontab -e
no crontab for aaaaaaaaaabbbbbbbbbbaaaaaaaaaabbbbbbbbbbaaaaaaaaaab - using an empty
one

I thought it is weird that you are aaaaaaaaaabbbbbbbbbbcccccccccc, and
cron is talking about user

aaaaaaaaaabbbbbbbbbbaaaaaaaaaabbbbbbbbbbaaaaaaaaaab

On the other hand, on RH Linux 7.0 with vixie-cron-3.0.1-56, I get

[abcabcabcabcabcabcabcabcabcabc@thales ~]$ crontab -e
Segmentation fault


Mate
---
Mate Wierdl | Dept. of Math. Sciences | University of Memphis


--
___________________________

Mark van Reijn
mark () edup tudelft nl
___________________________
"Because light travels faster than sound, most people appear to be intelligent,
  until you hear them speak"


Current thread: