Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2006-0539
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2006-0539

Description:
The convert-fcrontab program in fcron 3.0.0 might allow local users to gain privileges via a long command-line argument, which causes Linux glibc to report heap memory corruption, possibly because a strcpy in the strdup2 function can "overwrite some data."

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/24444

TRUSTIX
  http://www.trustix.org/errata/2006/0036

SAID
  Secunia Advisory: SA18719

FULLDISC
  http://archives.neohapsis.com/archives/fulldisclosure/2006-01/0999.html

CONFIRM
  http://fcron.free.fr/doc/en/changes.html
  http://fcron.free.fr/news.php#a20060206a.xml

BUGTRAQ
  http://www.securityfocus.com/archive/1/archive/1/423697/100/0/threaded

BID
  16467


Return to the previous page.