Back to Database
Status published
Medium
CVE-2001-0560
Buffer overflow in Vixie cron 3.0.1-56 and earlier could allow...
Vulnerability Description
Buffer overflow in Vixie cron 3.0.1-56 and earlier could allow a local attacker to gain additional privileges via a long username (> 20 characters).
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2001-0560
Credits & Attribution
No credits recorded in the NVD database.
References
- http://www-1.ibm.com/support/search.wss?rs=0&q=IY17261&apar=only
- http://www.osvdb.org/5583
- http://www.linux-mandrake.com/en/security/2001/MDKSA-2001-022.php3
- http://archives.neohapsis.com/archives/linux/immunix/2001-q1/0066.html
- http://www.redhat.com/support/errata/RHSA-2001-014.html
- https://exchange.xforce.ibmcloud.com/vulnerabilities/6098
- http://archives.neohapsis.com/archives/bugtraq/2001-02/0197.html
- http://www-1.ibm.com/support/search.wss?rs=0&q=IY17048&apar=only
More from paul vixie
View All →CVE-2007-1856
Vixie Cron before 4.1-r10 on Gentoo Linux is installed with...
Low
2.1
CVE-2006-2607
do_command.c in Vixie cron (vixie-cron) 4.1 does not check the...
High
7.2
CVE-2005-1038
crontab in Vixie cron 4.1, when running with the -e...
Low
2.1
CVE-2001-0559
crontab in Vixie cron 3.0.1 and earlier does not properly...
High
7.2
CVE-2000-1096
crontab by Paul Vixie uses predictable file names for a...
Low
3.7
Affected Vendor
paul vixie
View all reports →Affected Software
vixie cron
Vulnerable Versions:
0
Timeline
Official Publish:
March 9th, 2002
Last Modified:
August 8th, 2024
Added to House:
July 18th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.