Secunia Logo
 
CVE Reference: CVE-2005-1038
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2005-1038

Description:
crontab in Vixie cron 4.1, when running with the -e option, allows local users to read the cron files of other users by changing the file being edited to a symlink. NOTE: there is insufficient information to know whether this is a duplicate of CVE-2001-0235.

CVE Status:
Candidate

References:

SUSE
  http://www.novell.com/linux/security/advisories/2007_007_suse.html

SGI

SAID
  Secunia Advisory: SA19532
  Secunia Advisory: SA20666
  Secunia Advisory: SA24995

REDHAT
  http://www.redhat.com/support/errata/RHSA-2005-361.html
  http://www.redhat.com/support/errata/RHSA-2006-0117.html

CONFIRM
  http://support.avaya.com/elmodocs2/security/ASA-2006-118.htm

BUGTRAQ
  http://www.securityfocus.com/archive/1/395093

BID
  13024


Return to the previous page.