An updated vixie-cron package that fixes a bug and security issue is now
available.
This update has been rated as having low security impact by the Red Hat
Security Response Team.
The vixie-cron package contains the Vixie version of cron. Cron is a
standard UNIX daemon that runs specified programs at scheduled times.
A bug was found in the way vixie-cron installs new crontab files. It is
possible for a local attacker to execute the crontab command in such a way
that they can view the contents of another user's crontab file. The Common
Vulnerabilities and Exposures project assigned the name CVE-2005-1038 to
this issue.
This update also fixes an issue where cron jobs could start before their
scheduled time.
All users of vixie-cron should upgrade to this updated package, which
contains backported patches and is not vulnerable to these issues.
| Red Hat Desktop (v. 3) |
|
| SRPMS: |
vixie-cron-4.1-10.EL3.src.rpm
File outdated by: RHBA-2007:1001 |
1cd7a13aa04b203dcc6f7c30409c9246 |
| |
| IA-32: |
vixie-cron-4.1-10.EL3.i386.rpm
File outdated by: RHBA-2007:1001 |
c282e07d0178f3330cf7fa617727c4ca |
| |
| x86_64: |
vixie-cron-4.1-10.EL3.x86_64.rpm
File outdated by: RHBA-2007:1001 |
9fd86935ce8f0019eaaa65977287648a |
| |
| Red Hat Enterprise Linux AS (v. 3) |
|
| SRPMS: |
vixie-cron-4.1-10.EL3.src.rpm
File outdated by: RHBA-2007:1001 |
1cd7a13aa04b203dcc6f7c30409c9246 |
| |
| IA-32: |
vixie-cron-4.1-10.EL3.i386.rpm
File outdated by: RHBA-2007:1001 |
c282e07d0178f3330cf7fa617727c4ca |
| |
| IA-64: |
vixie-cron-4.1-10.EL3.ia64.rpm
File outdated by: RHBA-2007:1001 |
118831a4b64648ce557166c5379a5a7d |
| |
| PPC: |
vixie-cron-4.1-10.EL3.ppc.rpm
File outdated by: RHBA-2007:1001 |
c0fa18bc6a77a4eb24e762c16093f668 |
| |
| s390: |
vixie-cron-4.1-10.EL3.s390.rpm
File outdated by: RHBA-2007:1001 |
812d722b0fa8a7c71f97adf24a00a9c6 |
| |
| s390x: |
vixie-cron-4.1-10.EL3.s390x.rpm
File outdated by: RHBA-2007:1001 |
210220420e2fc1fd91409b6edafe0534 |
| |
| x86_64: |
vixie-cron-4.1-10.EL3.x86_64.rpm
File outdated by: RHBA-2007:1001 |
9fd86935ce8f0019eaaa65977287648a |
| |
| Red Hat Enterprise Linux ES (v. 3) |
|
| SRPMS: |
vixie-cron-4.1-10.EL3.src.rpm
File outdated by: RHBA-2007:1001 |
1cd7a13aa04b203dcc6f7c30409c9246 |
| |
| IA-32: |
vixie-cron-4.1-10.EL3.i386.rpm
File outdated by: RHBA-2007:1001 |
c282e07d0178f3330cf7fa617727c4ca |
| |
| IA-64: |
vixie-cron-4.1-10.EL3.ia64.rpm
File outdated by: RHBA-2007:1001 |
118831a4b64648ce557166c5379a5a7d |
| |
| x86_64: |
vixie-cron-4.1-10.EL3.x86_64.rpm
File outdated by: RHBA-2007:1001 |
9fd86935ce8f0019eaaa65977287648a |
| |
| Red Hat Enterprise Linux WS (v. 3) |
|
| SRPMS: |
vixie-cron-4.1-10.EL3.src.rpm
File outdated by: RHBA-2007:1001 |
1cd7a13aa04b203dcc6f7c30409c9246 |
| |
| IA-32: |
vixie-cron-4.1-10.EL3.i386.rpm
File outdated by: RHBA-2007:1001 |
c282e07d0178f3330cf7fa617727c4ca |
| |
| IA-64: |
vixie-cron-4.1-10.EL3.ia64.rpm
File outdated by: RHBA-2007:1001 |
118831a4b64648ce557166c5379a5a7d |
| |
| x86_64: |
vixie-cron-4.1-10.EL3.x86_64.rpm
File outdated by: RHBA-2007:1001 |
9fd86935ce8f0019eaaa65977287648a |
| |
(The unlinked packages above are only available from the Red Hat Network)
|
154424 - [RHEL-3] cronjobs start too early
162022 - CVE-2005-1038 vixie-cron information leak
178432 - prediction: vixie-cron-4.1's pam_unix session log messages will be most unpopular
178436 - network service interruption can cause initgroups() to delay cron job execution by more than one minute