crontab in Vixie cron 3.0.1 and earlier does not properly drop privileges after the failed parsing of a modification operation, which could allow a local attacker to gain additional privileges when an editor is called to correct the error.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Vixie_cron | Paul_vixie | * | 3.0.1 (including) |