Security Advisory
CVE-2009-3589
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
incron 0.5.5 does not initialize supplementary groups when running a process from a users incrontabs, which causes the process to be run with the incrond supplementary groups and allows local users to gain privileges via an incrontab table.