{"id":"CVE-2012-6110","details":"bcron-exec in bcron before 0.10 does not close file descriptors associated with temporary files when running a cron job, which allows local users to modify job files and send spam messages by accessing an open file descriptor.","modified":"2026-04-10T03:42:33.861351Z","published":"2014-09-29T22:55:05Z","references":[{"type":"EVIDENCE","url":"https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=686650"},{"type":"FIX","url":"https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=686650"},{"type":"WEB","url":"http://seclists.org/oss-sec/2013/q1/102"},{"type":"WEB","url":"http://untroubled.org/bcron/NEWS"},{"type":"WEB","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/81383"}],"schema_version":"1.7.5"}