Bugtraq mailing list archives

Re: Vixie cron vulnerability


From: Edwin Chiu <Edwin.Chiu () E-WARES COM>
Date: Tue, 8 May 2001 13:44:39 -0400

FYI

The exploit failed for:

Redhat 6.1
    vixie-cron-3.0.1-39

Redhat 6.2
    vixie-cron-3.0.1-40


Regards,
Edwin

Cade Cairns wrote:

Greetings Bugtraqers,

Attached is a simple proof of concept for the vixie cron vulnerability
recently published in Debian Security Advisory DSA-054-1. The code was
written during SIA analysis of this vulnerability.

Further information on the vulnerability may be found in the SecurityFocus
SIA commercial alert, also attached to this message.

Cade Cairns
SecurityFocus
http://www.securityfocus.com/


Current thread: