First published: Wed Nov 24 2004(Updated: )
fcronsighup in Fcron 2.0.1, 2.9.4, and possibly earlier versions allows local users to gain sensitive information by calling fcronsighup with an arbitrary file, which reveals the contents of the file that can not be parsed in an error message.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Thibault Godouet FCron | =2.9.4 | |
Thibault Godouet FCron | =2.0.1 | |
Gentoo Linux |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2004-1030 is considered to have a medium severity due to potential exposure of sensitive information.
To fix CVE-2004-1030, upgrade Fcron to version 2.9.5 or later.
The affected versions in CVE-2004-1030 include Fcron 2.0.1 and 2.9.4.
Local users of affected Fcron versions are at risk of gaining access to sensitive information.
The primary impact of CVE-2004-1030 is the unintended disclosure of file contents when fcronsighup is improperly called.