CVE-2004-1030: Low severity Thibault Godouet FCron vulnerability
Published Nov 24, 2004
·Updated
fcronsighup in Fcron 2.0.1, 2.9.4, and possibly earlier versions allows local users to gain sensitive information by calling fcronsighup with an arbitrary file, which reveals the contents of the file that can not be parsed in an error message.
Affected Software
3 affected components
Thibault Godouet FCron=2.9.4
Thibault Godouet FCron=2.0.1
Gentoo Linux
Remediation
Patch Available
Event History
Nov 24, 2004
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-1030?
CVE-2004-1030 is considered to have a medium severity due to potential exposure of sensitive information.
2
How do I fix CVE-2004-1030?
To fix CVE-2004-1030, upgrade Fcron to version 2.9.5 or later.
3
What are the affected versions mentioned in CVE-2004-1030?
The affected versions in CVE-2004-1030 include Fcron 2.0.1 and 2.9.4.
4
Who is affected by CVE-2004-1030?
Local users of affected Fcron versions are at risk of gaining access to sensitive information.
5
What is the primary impact of CVE-2004-1030?
The primary impact of CVE-2004-1030 is the unintended disclosure of file contents when fcronsighup is improperly called.