CVE-2009-4133

Condor 6.5.4 through 7.2.4, 7.3.x, and 7.4.0, as used in MRG, Grid for MRG, and Grid Execute Node for MRG, allows remote authenticated users to queue jobs as an arbitrary user, and thereby gain privileges, by using a Condor command-line tool to modify an unspecified job attribute.
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:a:condor_project:condor:6.5.4:*:*:*:*:*:*:*
cpe:2.3:a:condor_project:condor:6.8.0:*:*:*:*:*:*:*
cpe:2.3:a:condor_project:condor:6.8.1:*:*:*:*:*:*:*
cpe:2.3:a:condor_project:condor:6.8.2:*:*:*:*:*:*:*
cpe:2.3:a:condor_project:condor:6.8.3:*:*:*:*:*:*:*
cpe:2.3:a:condor_project:condor:6.8.4:*:*:*:*:*:*:*
cpe:2.3:a:condor_project:condor:6.8.5:*:*:*:*:*:*:*
cpe:2.3:a:condor_project:condor:6.8.6:*:*:*:*:*:*:*
cpe:2.3:a:condor_project:condor:6.8.7:*:*:*:*:*:*:*
cpe:2.3:a:condor_project:condor:6.8.8:*:*:*:*:*:*:*
cpe:2.3:a:condor_project:condor:6.8.9:*:*:*:*:*:*:*
cpe:2.3:a:condor_project:condor:7.0.0:*:*:*:*:*:*:*
cpe:2.3:a:condor_project:condor:7.0.1:*:*:*:*:*:*:*
cpe:2.3:a:condor_project:condor:7.0.2:*:*:*:*:*:*:*
cpe:2.3:a:condor_project:condor:7.0.3:*:*:*:*:*:*:*
cpe:2.3:a:condor_project:condor:7.0.4:*:*:*:*:*:*:*
cpe:2.3:a:condor_project:condor:7.0.5:*:*:*:*:*:*:*
cpe:2.3:a:condor_project:condor:7.0.6:*:*:*:*:*:*:*
cpe:2.3:a:condor_project:condor:7.1.0:*:*:*:*:*:*:*
cpe:2.3:a:condor_project:condor:7.1.1:*:*:*:*:*:*:*
cpe:2.3:a:condor_project:condor:7.1.2:*:*:*:*:*:*:*
cpe:2.3:a:condor_project:condor:7.1.3:*:*:*:*:*:*:*
cpe:2.3:a:condor_project:condor:7.1.4:*:*:*:*:*:*:*
cpe:2.3:a:condor_project:condor:7.2.0:*:*:*:*:*:*:*
cpe:2.3:a:condor_project:condor:7.2.1:*:*:*:*:*:*:*
cpe:2.3:a:condor_project:condor:7.2.2:*:*:*:*:*:*:*
cpe:2.3:a:condor_project:condor:7.2.3:*:*:*:*:*:*:*
cpe:2.3:a:condor_project:condor:7.2.4:*:*:*:*:*:*:*
cpe:2.3:a:condor_project:condor:7.3.0:*:*:*:*:*:*:*
cpe:2.3:a:condor_project:condor:7.3.1:*:*:*:*:*:*:*
cpe:2.3:a:condor_project:condor:7.3.2:*:*:*:*:*:*:*
cpe:2.3:a:condor_project:condor:7.4.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_mrg:1.2:*:*:*:*:*:*:*

History

21 Nov 2024, 01:08

Type Values Removed Values Added
References () http://condor-wiki.cs.wisc.edu/index.cgi/tktview?tn=1018 - () http://condor-wiki.cs.wisc.edu/index.cgi/tktview?tn=1018 -
References () http://secunia.com/advisories/37766 - Vendor Advisory () http://secunia.com/advisories/37766 - Vendor Advisory
References () http://secunia.com/advisories/37803 - Vendor Advisory () http://secunia.com/advisories/37803 - Vendor Advisory
References () http://securitytracker.com/id?1023378 - () http://securitytracker.com/id?1023378 -
References () http://www.cs.wisc.edu/condor/manual/v7.4/8_3Stable_Release.html#SECTION00931000000000000000 - Vendor Advisory () http://www.cs.wisc.edu/condor/manual/v7.4/8_3Stable_Release.html#SECTION00931000000000000000 - Vendor Advisory
References () http://www.cs.wisc.edu/condor/security/vulnerabilities/CONDOR-2009-0001.html - Vendor Advisory () http://www.cs.wisc.edu/condor/security/vulnerabilities/CONDOR-2009-0001.html - Vendor Advisory
References () http://www.redhat.com/support/errata/RHSA-2009-1688.html - () http://www.redhat.com/support/errata/RHSA-2009-1688.html -
References () http://www.redhat.com/support/errata/RHSA-2009-1689.html - () http://www.redhat.com/support/errata/RHSA-2009-1689.html -
References () http://www.securityfocus.com/bid/37443 - () http://www.securityfocus.com/bid/37443 -
References () https://bugzilla.redhat.com/show_bug.cgi?id=544371 - () https://bugzilla.redhat.com/show_bug.cgi?id=544371 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/54984 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/54984 -

Information

Published : 2009-12-23 18:30

Updated : 2024-11-21 01:08


NVD link : CVE-2009-4133

Mitre link : CVE-2009-4133

CVE.ORG link : CVE-2009-4133


JSON object : View

Products Affected

condor_project

  • condor

redhat

  • enterprise_mrg