CVE-2007-1856: Low severity Gentoo Linux vulnerability
Vixie Cron before 4.1-r10 on Gentoo Linux is installed with insecure permissions, which allows local users to cause a denial of service (cron failure) by creating hard links, which results in a failed stnlink check in database.c.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2007-1856?
CVE-2007-1856 has a moderate severity due to its potential to cause denial of service in Vixie Cron.
How do I fix CVE-2007-1856?
To fix CVE-2007-1856, ensure that Vixie Cron is upgraded to version 4.1-r10 or later, which resolves the insecure permissions issue.
Who is affected by CVE-2007-1856?
CVE-2007-1856 affects users of Vixie Cron versions up to 4.1 on Gentoo Linux installations.
What was the cause of CVE-2007-1856?
CVE-2007-1856 was caused by insecure file permissions that allowed local users to create hard links and disrupt cron operations.
Can CVE-2007-1856 be exploited remotely?
CVE-2007-1856 cannot be exploited remotely as it requires local user access to the system.