Required CVE Record Information
Description
crontab.c in crontab in FreeBSD and Apple Mac OS X allows local users to (1) determine the existence of arbitrary files via a symlink attack on a /tmp/crontab.XXXXXXXXXX temporary file and (2) perform MD5 checksum comparisons on arbitrary pairs of files via two symlink attacks on /tmp/crontab.XXXXXXXXXX temporary files.
References 7 Total
- exchange.xforce.ibmcloud.com: freebsd-realpath-info-disc(65899) vdb-entry
- openwall.com: [oss-security] 20110228 Re: CVE request: FreeBSD/OS X crontab information leakage mailing-list
- securityfocus.com: 46604 vdb-entry
- securityreason.com: 8117 third-party-advisory
- securityfocus.com: 20110228 FreeBSD crontab information leakage mailing-list
- openwall.com: [oss-security] 20110228 CVE request: FreeBSD/OS X crontab information leakage mailing-list
- marc.info: 20110228 FreeBSD crontab information leakage mailing-list
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 7 Total
- exchange.xforce.ibmcloud.com: freebsd-realpath-info-disc(65899) vdb-entryx_transferred
- openwall.com: [oss-security] 20110228 Re: CVE request: FreeBSD/OS X crontab information leakage mailing-listx_transferred
- securityfocus.com: 46604 vdb-entryx_transferred
- securityreason.com: 8117 third-party-advisoryx_transferred
- securityfocus.com: 20110228 FreeBSD crontab information leakage mailing-listx_transferred
- openwall.com: [oss-security] 20110228 CVE request: FreeBSD/OS X crontab information leakage mailing-listx_transferred
- marc.info: 20110228 FreeBSD crontab information leakage mailing-listx_transferred