What of cron?
Posted Jul 13, 2006 17:57 UTC (Thu) by spitzak
In reply to: What of cron?
Parent article: Denial of reality vulnerabilities
But most of those programs would get an error on the first "command" it found in the file of garbage and quit at that point, never able to reach the embedded command.
I would think a program that keeps parsing text from the file, ignoring errors no matter how bad they are, is a security hole, as this shows. I would suspect that not just cron is at fault, I would look at every older Unix utility.
to post comments)