Show filters
8 Total Results
Displaying 1-8 of 8
Sort by:
Attacker Value
Unknown

CVE-2012-5390

Disclosure Date: June 06, 2014 (last updated October 05, 2023)
The standard universe shadow (condor_shadow.std) component in Condor 7.7.3 through 7.7.6, 7.8.0 before 7.8.5, and 7.9.0 does no properly check privileges, which allows remote attackers to gain privileges via a crafted standard universe job.
0
Attacker Value
Unknown

CVE-2012-4462

Disclosure Date: March 14, 2013 (last updated October 05, 2023)
aviary/jobcontrol.py in Condor, as used in Red Hat Enterprise MRG 2.3, when removing a job, allows remote attackers to cause a denial of service (condor_schedd restart) via square brackets in the cproc option.
0
Attacker Value
Unknown

CVE-2012-3493

Disclosure Date: September 28, 2012 (last updated October 05, 2023)
The command_give_request_ad function in condor_startd.V6/command.cpp Condor 7.6.x before 7.6.10 and 7.8.x before 7.8.4 allows remote attackers to obtain sensitive information, and possibly control or start arbitrary jobs, via a ClassAd request to the condor_startd port, which leaks the ClaimId.
0
Attacker Value
Unknown

CVE-2012-5197

Disclosure Date: September 28, 2012 (last updated October 05, 2023)
Multiple unspecified vulnerabilities in Condor 7.6.x before 7.6.10 and 7.8.x before 7.8.4 have unknown impact and attack vectors related to "error checking of system calls."
0
Attacker Value
Unknown

CVE-2012-5196

Disclosure Date: September 28, 2012 (last updated October 05, 2023)
Multiple buffer overflows in Condor 7.6.x before 7.6.10 and 7.8.x before 7.8.4 have unknown impact and attack vectors.
0
Attacker Value
Unknown

CVE-2012-3492

Disclosure Date: September 28, 2012 (last updated October 05, 2023)
The filesystem authentication (condor_io/condor_auth_fs.cpp) in Condor 7.6.x before 7.6.10 and 7.8.x before 7.8.4 uses authentication directories even when they have weak permissions, which allows remote attackers to impersonate users by renaming a user's authentication directory.
0
Attacker Value
Unknown

CVE-2012-3491

Disclosure Date: September 28, 2012 (last updated October 05, 2023)
src/condor_schedd.V6/schedd.cpp in Condor 7.6.x before 7.6.10 and 7.8.x before 7.8.4 does not properly check the permissions of jobs, which allows remote authenticated users to remove arbitrary idle jobs via unspecified vectors.
0
Attacker Value
Unknown

CVE-2012-3416

Disclosure Date: August 25, 2012 (last updated October 04, 2023)
Condor before 7.8.2 allows remote attackers to bypass host-based authentication and execute actions such as ALLOW_ADMINISTRATOR or ALLOW_WRITE by connecting from a system with a spoofed reverse DNS hostname.
0