The standard universe shadow (condor_shadow.std) component in Condor 7.7.3 through 7.7.6, 7.8.0 before 7.8.5, and 7.9.0 does no properly check privileges, which allows remote attackers to gain privileges via a crafted standard universe job.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
History
21 Nov 2024, 01:44
Type | Values Removed | Values Added |
---|---|---|
References | () http://research.cs.wisc.edu/htcondor/security/vulnerabilities/CONDOR-2012-0003.html - Vendor Advisory | |
References | () http://secunia.com/advisories/51862 - | |
References | () http://www.securityfocus.com/bid/57328 - |
Information
Published : 2014-06-06 14:55
Updated : 2024-11-21 01:44
NVD link : CVE-2012-5390
Mitre link : CVE-2012-5390
CVE.ORG link : CVE-2012-5390
JSON object : View
Products Affected
condor_project
- condor
CWE
CWE-264
Permissions, Privileges, and Access Controls