OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: Edwin Chiu (Edwin.ChiuE-WARES.COM)
Date: Tue May 08 2001 - 12:44:39 CDT

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

    FYI

    The exploit failed for:

    Redhat 6.1
        vixie-cron-3.0.1-39

    Redhat 6.2
        vixie-cron-3.0.1-40

    Regards,
    Edwin

    Cade Cairns wrote:

    > Greetings Bugtraqers,
    >
    > Attached is a simple proof of concept for the vixie cron vulnerability
    > recently published in Debian Security Advisory DSA-054-1. The code was
    > written during SIA analysis of this vulnerability.
    >
    > Further information on the vulnerability may be found in the SecurityFocus
    > SIA commercial alert, also attached to this message.
    >
    > Cade Cairns
    > SecurityFocus
    > http://www.securityfocus.com/