cron Project cron 3.0pl1-128.

CPE Details

cron Project cron 3.0pl1-128.
3.0pl1-128.
2017-06-22
16h44 +00:00
2021-05-27
15h03 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:cron_project:cron:3.0pl1-128.:*:*:*:*:*:*:*

Informations

Vendor

cron_project

Product

cron

Version

3.0pl1-128.

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2019-9704 2019-03-11 23h00 +00:00 Vixie Cron before the 3.0pl1-133 Debian package allows local users to cause a denial of service (daemon crash) via a large crontab file because the calloc return value is not checked.
5.5
Moyen
CVE-2019-9705 2019-03-11 23h00 +00:00 Vixie Cron before the 3.0pl1-133 Debian package allows local users to cause a denial of service (memory consumption) via a large crontab file because an unlimited number of lines is accepted.
5.5
Moyen
CVE-2017-9525 2017-06-09 14h00 +00:00 In the cron package through 3.0pl1-128 on Debian, and through 3.0pl1-128ubuntu2 on Ubuntu, the postinst maintainer script allows for group-crontab-to-root privilege escalation via symlink attacks against unsafe usage of the chown and chmod programs.
6.7
Moyen