First published: Sat Feb 04 2006(Updated: )
The convert-fcrontab program in fcron 3.0.0 might allow local users to gain privileges via a long command-line argument, which causes Linux glibc to report heap memory corruption, possibly because a strcpy in the strdup2 function can "overwrite some data."
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
FCron | =3.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-0539 is classified as a local privilege escalation vulnerability.
To fix CVE-2006-0539, upgrade to a version of fcron that is not affected or apply appropriate patches.
Local users on systems running fcron version 3.0.0 are affected by CVE-2006-0539.
Exploitation of CVE-2006-0539 may allow local users to gain elevated privileges on the affected system.
Yes, there are known methods that could be utilized to exploit CVE-2006-0539 leading to possible privilege escalation.