CVE-2009-3589

Metadata

CVE-2009-3589
4.6
koji.fedoraproject.org, admin.fedoraproject.org
2009-10-08
2017-06-06 20:21

Description

incron 0.5.5 does not initialize supplementary groups when running a process from a user's incrontabs, which causes the process to be run with the incrond supplementary groups and allows local users to gain privileges via an incrontab table.

Related Vulnerabilities

platform vulnerability
CVE-2009-3589 incron
CVE-2009-3589