CVE Vulnerabilities

CVE-2012-3459

Published: Sep 28, 2012 | Modified: Jul 15, 2021
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.9 MEDIUM
AV:N/AC:M/Au:S/C:P/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

Cumin before 0.1.5444, as used in Red Hat Enterprise Messaging, Realtime, and Grid (MRG) 2.0, allows remote authenticated users to modify Condor attributes and possibly gain privileges via crafted additional parameters in an HTTP POST request, which triggers a job attribute change request to Condor.

Affected Software

Name Vendor Start Version End Version
Cumin Trevor_mckay * 0.1.5192-4 (including)
Cumin Trevor_mckay 0.1.3160-1 (including) 0.1.3160-1 (including)
Cumin Trevor_mckay 0.1.4369-1 (including) 0.1.4369-1 (including)
Cumin Trevor_mckay 0.1.4410-2 (including) 0.1.4410-2 (including)
Cumin Trevor_mckay 0.1.4494-1 (including) 0.1.4494-1 (including)
Cumin Trevor_mckay 0.1.4794-1 (including) 0.1.4794-1 (including)
Cumin Trevor_mckay 0.1.4916-1 (including) 0.1.4916-1 (including)
Cumin Trevor_mckay 0.1.5033-1 (including) 0.1.5033-1 (including)
Cumin Trevor_mckay 0.1.5037-1 (including) 0.1.5037-1 (including)
Cumin Trevor_mckay 0.1.5054-1 (including) 0.1.5054-1 (including)
Cumin Trevor_mckay 0.1.5068-1 (including) 0.1.5068-1 (including)
Cumin Trevor_mckay 0.1.5092-1 (including) 0.1.5092-1 (including)
Cumin Trevor_mckay 0.1.5098-2 (including) 0.1.5098-2 (including)
Cumin Trevor_mckay 0.1.5105-1 (including) 0.1.5105-1 (including)
Cumin Trevor_mckay 0.1.5137-1 (including) 0.1.5137-1 (including)
Cumin Trevor_mckay 0.1.5137-2 (including) 0.1.5137-2 (including)
Cumin Trevor_mckay 0.1.5137-3 (including) 0.1.5137-3 (including)
Cumin Trevor_mckay 0.1.5137-4 (including) 0.1.5137-4 (including)
Cumin Trevor_mckay 0.1.5137-5 (including) 0.1.5137-5 (including)
Cumin Trevor_mckay 0.1.5192-1 (including) 0.1.5192-1 (including)
Enterprise_mrg Redhat 2.0 (including) 2.0 (including)

References