7.5
CVSSv2

CVE-1999-0768

Published: 25/08/1999 Updated: 09/09/2008
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 760
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Buffer overflow in Vixie Cron on Red Hat systems via the MAILTO environmental variable.

Vulnerable Product Search on Vulmon Subscribe to Product

redhat linux 4.2

redhat linux 5.2

redhat linux 6.0

suse suse linux 6.1

suse suse linux 6.0

Exploits

source: wwwsecurityfocuscom/bid/602/info The version of Vixie cron that ships with RedHat versions 42, 52 and 60 is vulnerable to a local buffer overflow attack By utilizing the MAILTO environment variable, a buffer can be overflown in the cron_popen() function, allowing an attacker to execute arbitrary code Vixie cron daemon is inst ...
source: wwwsecurityfocuscom/bid/602/info The version of Vixie cron that ships with RedHat versions 42, 52 and 60 is vulnerable to a local buffer overflow attack By utilizing the MAILTO environment variable, a buffer can be overflown in the cron_popen() function, allowing an attacker to execute arbitrary code Vixie cron daemon is ins ...