The standard universe shadow (condor_shadow.std) component in Condor 7.7.3 through 7.7.6, 7.8.0 before 7.8.5, and 7.9.0 does no properly check privileges, which allows remote attackers to gain privileges via a crafted standard universe job.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Condor | Condor_project | 7.9.0 (including) | 7.9.0 (including) |
Condor | Ubuntu | lucid | * |
Condor | Ubuntu | oneiric | * |
Condor | Ubuntu | quantal | * |
Condor | Ubuntu | raring | * |
Condor | Ubuntu | upstream | * |