CVE-2004-1033

Publication date 1 March 2005

Last updated 24 July 2024


Ubuntu priority

Fcron 2.0.1, 2.9.4, and possibly earlier versions leak file descriptors of open files, which allows local users to bypass access restrictions and read fcron.allow and fcron.deny via the EDITOR environment variable.

Status

Package Ubuntu Release Status
fcron 7.04 feisty
Fixed 3.0.0-2
6.10 edgy
Fixed 3.0.0-2
6.06 LTS dapper
Fixed 3.0.0-2