Security Advisory

CVE-2009-3589

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2009-10-08 15:00:00
Last updated 2024-09-16 17:27:41
Assigner mitre
State PUBLISHED

Description

incron 0.5.5 does not initialize supplementary groups when running a process from a users incrontabs, which causes the process to be run with the incrond supplementary groups and allows local users to gain privileges via an incrontab table.