← Back

CVE-2004-1031

nvd nist
Published: Mar 1, 2005Modified: Apr 16, 2026

JSON object

Loading...
7.2
Vector
AV:L/AC:L/Au:N/C:C/I:C/A:C
Exploitability: 3.9 / Impact: 10.0
Source: NVD

Description

fcronsighup in Fcron 2.0.1, 2.9.4, and possibly earlier versions allows local users to bypass access restrictions and load an arbitrary configuration file by starting an suid process and pointing the fcronsighup configuration file to a /proc entry that is owned by root but modifiable by the user, such as /proc/self/cmdline or /proc/self/environ.

Affected (3)

Fcron
1 product
Linux
Configuration A
2 vulnerable
Vulnerable SoftwareAffected Versions
Thibault Godouet
Version 2.0.1
Version 2.9.4
Configuration B
1 vulnerable
Vulnerable SoftwareAffected Versions
All versions

Timeline

No history available yet.