Karol Wiêsek wrote:
> -----BEGIN PGP SIGNED MESSAGE-----
> Hash: SHA1
>
> Name: vixie-cron
[snip]
> Details:
>
> Insufficient checks allows user to change during edition regular file to
> symbolic link to any file. While copying crontab uses root permisions,
> but also checks entrys, so attack...
> -----BEGIN PGP SIGNED MESSAGE-----
> Hash: SHA1
>
> Name: vixie-cron
[snip]
> Details:
>
> Insufficient checks allows user to change during edition regular file to
> symbolic link to any file. While copying crontab uses root permisions,
> but also checks entrys, so attack...
[ more ]