4.6
CVSSv2

CVE-2006-0539

Published: 04/02/2006 Updated: 19/10/2018
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
VMScore: 465
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

The convert-fcrontab program in fcron 3.0.0 might allow local users to gain privileges via a long command-line argument, which causes Linux glibc to report heap memory corruption, possibly because a strcpy in the strdup2 function can "overwrite some data."

Vulnerable Product Search on Vulmon Subscribe to Product

thibault godouet fcron 3.0.0

Exploits

source: wwwsecurityfocuscom/bid/16467/info Fcron is susceptible to a local buffer-overflow vulnerability This issue is due to the application's failure to properly bounds-check user-supplied data before copying it to an insufficiently sized memory buffer This issue allows local attackers to execute arbitrary machine code with superuser ...