5.8
CVSSv2

CVE-2012-3493

Published: 28/09/2012 Updated: 07/11/2023
CVSS v2 Base Score: 5.8 | Impact Score: 4.9 | Exploitability Score: 8.6
VMScore: 516
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:N

Vulnerability Summary

The command_give_request_ad function in condor_startd.V6/command.cpp Condor 7.6.x prior to 7.6.10 and 7.8.x prior to 7.8.4 allows remote malicious users to obtain sensitive information, and possibly control or start arbitrary jobs, via a ClassAd request to the condor_startd port, which leaks the ClaimId.

Vulnerable Product Search on Vulmon Subscribe to Product

condor project condor 7.6.1

condor project condor 7.6.3

condor project condor 7.6.9

condor project condor 7.6.0

condor project condor 7.6.5

condor project condor 7.6.6

condor project condor 7.8.3

condor project condor 7.8.1

condor project condor 7.6.4

condor project condor 7.8.0

condor project condor 7.6.7

condor project condor 7.6.2

condor project condor 7.6.8

condor project condor 7.8.2

Vendor Advisories

Debian Bug report logs - #688210 condor: Multiple security issues Package: condor; Maintainer for condor is HTCondor Developers <condor-debian@cswiscedu>; Source for condor is src:condor (PTS, buildd, popcon) Reported by: Moritz Muehlenhoff <jmm@inutilorg> Date: Thu, 20 Sep 2012 10:57:01 UTC Severity: grave Tags: ...
Synopsis Moderate: Red Hat Enterprise MRG Grid 22 security update Type/Severity Security Advisory: Moderate Topic Updated Grid component packages that fix several security issues, addvarious enhancements and fix multiple bugs are now available for Red HatEnterprise MRG 2 for Red Hat Enterprise Linux 5The ...
Synopsis Moderate: Red Hat Enterprise MRG Grid 22 security update Type/Severity Security Advisory: Moderate Topic Updated Grid component packages that fix several security issues, addvarious enhancements and fix multiple bugs are now available for Red HatEnterprise MRG 2 for Red Hat Enterprise Linux 6The ...