First published: Fri Mar 05 2010(Updated: )
fcrontab in fcron before 3.0.5 allows local users to read arbitrary files via a symlink attack on an unspecified file.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
FCron | =2.9.2 | |
FCron | =2.1.0 | |
FCron | =2.9.6 | |
FCron | =2.0.2 | |
FCron | =2.9.1 | |
FCron | =2.0.0 | |
FCron | =3.0.3-rc1 | |
FCron | =1.0.0 | |
FCron | =0.8.0 | |
FCron | <=3.0.4 | |
FCron | =0.9.0 | |
FCron | =2.9.4 | |
FCron | =2.9.7 | |
FCron | =2.9.0 | |
FCron | =0.9.2.1 | |
FCron | =3.0.2 | |
FCron | =1.0.3 | |
FCron | =0.9.3 | |
FCron | =0.9.5 | |
FCron | =2.9.3 | |
FCron | =1.1.1 | |
FCron | =0.8.1 | |
FCron | =1.1.0 | |
FCron | =3.0.3 | |
FCron | =2.0.1 | |
FCron | =2.9.5 | |
FCron | =0.8.2 | |
FCron | =1.0.1 | |
FCron | =1.0.2 | |
FCron | =3.0.0 | |
FCron | =3.0.1 | |
FCron | =0.9.4 | |
FCron | =2.9.5.1 | |
FCron | =0.9.1 | |
<=3.0.4 | ||
=0.8.0 | ||
=0.8.1 | ||
=0.8.2 | ||
=0.9.0 | ||
=0.9.1 | ||
=0.9.2.1 | ||
=0.9.3 | ||
=0.9.4 | ||
=0.9.5 | ||
=1.0.0 | ||
=1.0.1 | ||
=1.0.2 | ||
=1.0.3 | ||
=1.1.0 | ||
=1.1.1 | ||
=2.0.0 | ||
=2.0.1 | ||
=2.0.2 | ||
=2.1.0 | ||
=2.9.0 | ||
=2.9.1 | ||
=2.9.2 | ||
=2.9.3 | ||
=2.9.4 | ||
=2.9.5 | ||
=2.9.5.1 | ||
=2.9.6 | ||
=2.9.7 | ||
=3.0.0 | ||
=3.0.1 | ||
=3.0.2 | ||
=3.0.3 | ||
=3.0.3-rc1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-0792 is classified as a medium-severity vulnerability due to its potential for local exploitation.
To fix CVE-2010-0792, upgrade to fcron version 3.0.5 or later, which has addressed this symlink attack issue.
CVE-2010-0792 affects local users on systems running vulnerable versions of fcron prior to 3.0.5.
CVE-2010-0792 is associated with a symlink attack that allows local users to read arbitrary files.
Vulnerable software includes multiple versions of fcron prior to version 3.0.5, including versions 0.8.0 through 2.9.7.