6.4
CVSSv2

CVE-2012-3492

Published: 28/09/2012 Updated: 07/11/2023
CVSS v2 Base Score: 6.4 | Impact Score: 4.9 | Exploitability Score: 10
VMScore: 570
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:N

Vulnerability Summary

The filesystem authentication (condor_io/condor_auth_fs.cpp) in Condor 7.6.x prior to 7.6.10 and 7.8.x prior to 7.8.4 uses authentication directories even when they have weak permissions, which allows remote malicious users to impersonate users by renaming a user's authentication directory.

Vulnerable Product Search on Vulmon Subscribe to Product

condor project condor 7.6.1

condor project condor 7.6.3

condor project condor 7.6.9

condor project condor 7.6.0

condor project condor 7.6.5

condor project condor 7.6.6

condor project condor 7.8.3

condor project condor 7.8.1

condor project condor 7.6.4

condor project condor 7.8.0

condor project condor 7.6.7

condor project condor 7.6.2

condor project condor 7.6.8

condor project condor 7.8.2

Vendor Advisories

Debian Bug report logs - #688210 condor: Multiple security issues Package: condor; Maintainer for condor is HTCondor Developers <condor-debian@cswiscedu>; Source for condor is src:condor (PTS, buildd, popcon) Reported by: Moritz Muehlenhoff <jmm@inutilorg> Date: Thu, 20 Sep 2012 10:57:01 UTC Severity: grave Tags: ...
Synopsis Moderate: Red Hat Enterprise MRG Grid 22 security update Type/Severity Security Advisory: Moderate Topic Updated Grid component packages that fix several security issues, addvarious enhancements and fix multiple bugs are now available for Red HatEnterprise MRG 2 for Red Hat Enterprise Linux 5The ...
Synopsis Moderate: Red Hat Enterprise MRG Grid 22 security update Type/Severity Security Advisory: Moderate Topic Updated Grid component packages that fix several security issues, addvarious enhancements and fix multiple bugs are now available for Red HatEnterprise MRG 2 for Red Hat Enterprise Linux 6The ...