漏洞信息详情
Crontab文件泄露漏洞
- CNNVD编号:CNNVD-200103-105
- 危害等级: 低危
- CVE编号:
CVE-2001-0235
- 漏洞类型:
访问验证错误
- 发布时间:
2001-03-26
- 威胁类型:
本地
- 更新时间:
2005-05-02
- 厂 商:
debian - 漏洞来源:
Reported to bugtra… -
漏洞简介
Crontab存在漏洞。本地用户可以在运行crontab时,通过移动已编辑的临时文件读取其他用户的crontab文件。
漏洞公告
FreeBSD patch obtained from OpenBSD (Todd Miller
Debian Linux 2.2
-
Debian 2.2 i386 cron_3.0pl1-57.2_i386.deb
http://security.debian.org/dists/stable/updates/main/binary-i386/cron_
3.0pl1-57.2_i386.deb
FreeBSD FreeBSD 3.0
-
FreeBSD 4.x crontab-4.x.patch
ftp://ftp.freebsd.org/pub/FreeBSD/CERT/patches/SA-01:09/crontab-4.x.pa
tch
FreeBSD FreeBSD 3.1
-
FreeBSD 4.x crontab-4.x.patch
ftp://ftp.freebsd.org/pub/FreeBSD/CERT/patches/SA-01:09/crontab-4.x.pa
tch
FreeBSD FreeBSD 3.2
-
FreeBSD 4.x crontab-4.x.patch
ftp://ftp.freebsd.org/pub/FreeBSD/CERT/patches/SA-01:09/crontab-4.x.pa
tch
FreeBSD FreeBSD 3.3
-
FreeBSD 4.x crontab-4.x.patch
ftp://ftp.freebsd.org/pub/FreeBSD/CERT/patches/SA-01:09/crontab-4.x.pa
tch
FreeBSD FreeBSD 3.4
-
FreeBSD 4.x crontab-4.x.patch
ftp://ftp.freebsd.org/pub/FreeBSD/CERT/patches/SA-01:09/crontab-4.x.pa
tch
FreeBSD FreeBSD 3.5
-
FreeBSD 4.x crontab-4.x.patch
ftp://ftp.freebsd.org/pub/FreeBSD/CERT/patches/SA-01:09/crontab-4.x.pa
tch
FreeBSD FreeBSD 3.5.1
-
FreeBSD 4.x crontab-4.x.patch
ftp://ftp.freebsd.org/pub/FreeBSD/CERT/patches/SA-01:09/crontab-4.x.pa
tch
FreeBSD FreeBSD 4.0 alpha
-
FreeBSD 4.x crontab-4.x.patch
ftp://ftp.freebsd.org/pub/FreeBSD/CERT/patches/SA-01:09/crontab-4.x.pa
tch
FreeBSD FreeBSD 4.0
-
FreeBSD 4.x crontab-4.x.patch
ftp://ftp.freebsd.org/pub/FreeBSD/CERT/patches/SA-01:09/crontab-4.x.pa
tch
FreeBSD FreeBSD 4.1
-
FreeBSD 4.x crontab-4.x.patch
ftp://ftp.freebsd.org/pub/FreeBSD/CERT/patches/SA-01:09/crontab-4.x.pa
tch
FreeBSD FreeBSD 4.1.1
-
FreeBSD 4.x crontab-4.x.patch
ftp://ftp.freebsd.org/pub/FreeBSD/CERT/patches/SA-01:09/crontab-4.x.pa
tch
参考网址
来源: DEBIAN
名称: DSA-024
链接:http://www.debian.org/security/2001/dsa-024
来源: FREEBSD
名称: FreeBSD-SA-01:09
链接:ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:09.crontab.v1.1.asc
来源: XF
名称: crontab-read-files(6225)
链接:http://xforce.iss.net/xforce/xfdb/6225
来源: BID
名称: 2332
链接:http://www.securityfocus.com/bid/2332
受影响实体
© 版权声明
文章版权归作者所有,未经允许请勿转载。
THE END