Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2011-4930

Опубликовано: 06 фев. 2012
Источник: redhat
CVSS2: 5.2
EPSS Низкий

Описание

Multiple format string vulnerabilities in Condor 7.2.0 through 7.6.4, and possibly certain 7.7.x versions, as used in Red Hat MRG Grid and possibly other products, allow local users to cause a denial of service (condor_schedd daemon and failure to launch jobs) and possibly execute arbitrary code via format string specifiers in (1) the reason for a hold for a job that uses an XML user log, (2) the filename of a file to be transferred, and possibly other unspecified vectors.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise MRG 1grid-condorAffected
MRG for RHEL-5 v. 2condorFixedRHSA-2012:010006.02.2012
MRG for RHEL-5 v. 2condor-ec2-enhancedFixedRHSA-2012:010006.02.2012
MRG for RHEL-5 v. 2condor-ec2-enhanced-hooksFixedRHSA-2012:010006.02.2012
MRG for RHEL-5 v. 2condor-wallaby-base-dbFixedRHSA-2012:010006.02.2012
MRG for RHEL-5 v. 2cuminFixedRHSA-2012:010006.02.2012
MRG for RHEL-5 v. 2python-psycopg2FixedRHSA-2012:010006.02.2012
MRG for RHEL-5 v. 2ruby-spqrFixedRHSA-2012:010006.02.2012
MRG for RHEL-5 v. 2wallabyFixedRHSA-2012:010006.02.2012
Red Hat Enterprise MRG 2condorFixedRHSA-2012:009906.02.2012

Показывать по

Дополнительная информация

Статус:

Moderate
https://bugzilla.redhat.com/show_bug.cgi?id=759548Condor: Multiple format string flaws

EPSS

Процентиль: 28%
0.00098
Низкий

5.2 Medium

CVSS2

Связанные уязвимости

ubuntu
почти 12 лет назад

Multiple format string vulnerabilities in Condor 7.2.0 through 7.6.4, and possibly certain 7.7.x versions, as used in Red Hat MRG Grid and possibly other products, allow local users to cause a denial of service (condor_schedd daemon and failure to launch jobs) and possibly execute arbitrary code via format string specifiers in (1) the reason for a hold for a job that uses an XML user log, (2) the filename of a file to be transferred, and possibly other unspecified vectors.

nvd
почти 12 лет назад

Multiple format string vulnerabilities in Condor 7.2.0 through 7.6.4, and possibly certain 7.7.x versions, as used in Red Hat MRG Grid and possibly other products, allow local users to cause a denial of service (condor_schedd daemon and failure to launch jobs) and possibly execute arbitrary code via format string specifiers in (1) the reason for a hold for a job that uses an XML user log, (2) the filename of a file to be transferred, and possibly other unspecified vectors.

debian
почти 12 лет назад

Multiple format string vulnerabilities in Condor 7.2.0 through 7.6.4, ...

github
больше 3 лет назад

Multiple format string vulnerabilities in Condor 7.2.0 through 7.6.4, and possibly certain 7.7.x versions, as used in Red Hat MRG Grid and possibly other products, allow local users to cause a denial of service (condor_schedd daemon and failure to launch jobs) and possibly execute arbitrary code via format string specifiers in (1) the reason for a hold for a job that uses an XML user log, (2) the filename of a file to be transferred, and possibly other unspecified vectors.

EPSS

Процентиль: 28%
0.00098
Низкий

5.2 Medium

CVSS2