Search 219043 CVE descriptions
and 99761 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2006-2607
Description:do_command.c in Vixie cron (vixie-cron) 4.1 does not check the return code of a setuid call, which might allow local users to gain root privileges if setuid fails in cases such as PAM failures or resource limits, as originally demonstrated by a program that exceeds the process limits as defined in /etc/security/limits.conf.
Test IDs:  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2006-2607
BugTraq ID: 18108
Bugtraq: 20060525 rPSA-2006-0082-1 vixie-cron (Google Search)
RedHat Security Advisories: RHSA-2006:0539
SuSE Security Announcement: SUSE-SA:2006:027 (Google Search)
XForce ISS Database: vixie-cron-docommand-gain-privilege(26691)

© 1998-2021 E-Soft Inc. All rights reserved.