3.3
CVSSv2

CVE-2010-0424

Published: 25/02/2010 Updated: 13/02/2023
CVSS v2 Base Score: 3.3 | Impact Score: 4.9 | Exploitability Score: 3.4
VMScore: 294
Vector: AV:L/AC:M/Au:N/C:N/I:P/A:P

Vulnerability Summary

The edit_cmd function in crontab.c in (1) cronie prior to 1.4.4 and (2) Vixie cron (vixie-cron) allows local users to change the modification times of arbitrary files, and consequently cause a denial of service, via a symlink attack on a temporary file in the /tmp directory.

Vulnerable Product Search on Vulmon Subscribe to Product

fedorahosted cronie

paul vixie vixie cron

Vendor Advisories

Synopsis Low: vixie-cron security, bug fix, and enhancement update Type/Severity Security Advisory: Low Topic An updated vixie-cron package that fixes one security issue, several bugs,and adds one enhancement is now available for Red Hat Enterprise Linux 5The Red Hat Security Response Team has rated this u ...