CVE Vulnerabilities

CVE-2009-4133

Published: Dec 23, 2009 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.5 MEDIUM
AV:N/AC:L/Au:S/C:P/I:P/A:P
RedHat/V2
5.8 MODERATE
AV:A/AC:L/Au:N/C:P/I:P/A:P
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Condor 6.5.4 through 7.2.4, 7.3.x, and 7.4.0, as used in MRG, Grid for MRG, and Grid Execute Node for MRG, allows remote authenticated users to queue jobs as an arbitrary user, and thereby gain privileges, by using a Condor command-line tool to modify an unspecified job attribute.

Affected Software

NameVendorStart VersionEnd Version
CondorCondor_project6.5.4 (including)6.5.4 (including)
CondorCondor_project6.8.0 (including)6.8.0 (including)
CondorCondor_project6.8.1 (including)6.8.1 (including)
CondorCondor_project6.8.2 (including)6.8.2 (including)
CondorCondor_project6.8.3 (including)6.8.3 (including)
CondorCondor_project6.8.4 (including)6.8.4 (including)
CondorCondor_project6.8.5 (including)6.8.5 (including)
CondorCondor_project6.8.6 (including)6.8.6 (including)
CondorCondor_project6.8.7 (including)6.8.7 (including)
CondorCondor_project6.8.8 (including)6.8.8 (including)
CondorCondor_project6.8.9 (including)6.8.9 (including)
CondorCondor_project7.0.0 (including)7.0.0 (including)
CondorCondor_project7.0.1 (including)7.0.1 (including)
CondorCondor_project7.0.2 (including)7.0.2 (including)
CondorCondor_project7.0.3 (including)7.0.3 (including)
CondorCondor_project7.0.4 (including)7.0.4 (including)
CondorCondor_project7.0.5 (including)7.0.5 (including)
CondorCondor_project7.0.6 (including)7.0.6 (including)
CondorCondor_project7.1.0 (including)7.1.0 (including)
CondorCondor_project7.1.1 (including)7.1.1 (including)
CondorCondor_project7.1.2 (including)7.1.2 (including)
CondorCondor_project7.1.3 (including)7.1.3 (including)
CondorCondor_project7.1.4 (including)7.1.4 (including)
CondorCondor_project7.2.0 (including)7.2.0 (including)
CondorCondor_project7.2.1 (including)7.2.1 (including)
CondorCondor_project7.2.2 (including)7.2.2 (including)
CondorCondor_project7.2.3 (including)7.2.3 (including)
CondorCondor_project7.2.4 (including)7.2.4 (including)
CondorCondor_project7.3.0 (including)7.3.0 (including)
CondorCondor_project7.3.1 (including)7.3.1 (including)
CondorCondor_project7.3.2 (including)7.3.2 (including)
CondorCondor_project7.4.0 (including)7.4.0 (including)
Grid Execute Node for MRG on RHEL-4RedHatcondor-0:7.4.1-0.7.1.el4*
Grid for MRG on RHEL-4RedHatcondor-0:7.4.1-0.7.1.el4*
MRG for RHEL-5RedHatcondor-0:7.4.1-0.7.1.el5*
CondorUbuntukarmic*
CondorUbuntulucid*
CondorUbuntumaverick*
CondorUbuntunatty*
CondorUbuntuoneiric*
CondorUbuntuupstream*

References