积极预防 及时发现
快速响应 力保恢复
Paul Vixie的crontab给临时文件命名时使用可以预见的名字并且用户使用crontab -...
发布时间:2001-01-09 信息来源:管理员

CNCVE编号:CNCVE-20001096 CVE编号:CVE-2000-1096 安全级别:中 漏洞中文描述: Paul Vixie的crontab给临时文件命名时使用可以预见的名字并且用户使用crontab -e命令不能正确的确定文件的属主,这允许本地用户在访问spool目录时有写权限,并且能执行命令。 漏洞英文描述: crontab by Paul Vixie uses predictable file names for a temporary file and does not properly ensure that the file is owned by the user executing the crontab -e command, which allows local users with write access to the crontab spool directory to execute any commands. 漏洞参考: BUGTRAQ:20001116 vixie cron... | URL:http://archives.neohapsis.com/archives/bugtraq/2000-11/0237.html | DEBIAN:20001118 cron: local privilege escalation | URL:http://www.debian.org/security/2000/20001118a | BID:1960 | URL:http://www.se 系统类型:其他 漏洞类型:竞态情况错误