Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Christian Kastner

#45956of 53,632
5.5Total CVSS
Vulnerabilities · 1
PT-2019-6260
5.5
2019-03-10
Debian · Vixie Cron · CVE-2019-9705
**Name of the Vulnerable Software and Affected Versions** Vixie Cron versions prior to 3.0pl1-133 **Description** The issue is related to a memory allocation problem in the cron daemon, allowing an attacker to cause a denial of service by consuming excessive memory. This can be achieved by creating a large crontab file, as the system accepts an unlimited number of lines. **Recommendations** For Vixie Cron versions prior to 3.0pl1-133, update to the 3.0pl1-133 Debian package or later to resolve the issue. As a temporary workaround, consider restricting access to the crontab file to prevent malicious modifications.