Gentoo Linux Security Advisory GLSA 200704-11
https://security.gentoo.org/
Severity: Low
Title: Vixie Cron: Denial of Service
Date: April 16, 2007
Bugs: #164466
ID: 200704-11
Synopsis
=======
The Gentoo implementation of Vixie Cron is vulnerable to a local Denial
of Service.
Background
=========
Vixie Cron is a command scheduler with extended syntax over cron.
Affected packages
================
-------------------------------------------------------------------
Package / Vulnerable / Unaffected
-------------------------------------------------------------------
1 sys-process/vixie-cron < 4.1-r10 >= 4.1-r10
==========
During an internal audit, Raphael Marichez of the Gentoo Linux Security
Team found that Vixie Cron has weak permissions set on Gentoo, allowing
for a local user to create hard links to system and users cro...
style>.gentoo_availability{display:block;}
Get the latest Linux and open source security news straight to your inbox.