UBUNTU-CVE-2013-4255
Dashboard / Vulnerabilities / UBUNTU-CVE-2013-4255
Summary:
Details: The policy definition evaluator in Condor 7.5.4, 8.0.0, and earlier does not properly handle attributes in a (1) PREEMPT, (2) SUSPEND, (3) CONTINUE, (4) WANT_VACATE, or (5) KILL policy that evaluate to an Unconfigured, Undefined, or Error state, which allows remote authenticated users to cause a denial of service (condor_startd exit) via a crafted job.
References: https://ubuntu.com/security/CVE-2013-4255, https://rhn.redhat.com/errata/RHSA-2013-1171.html, https://htcondor-wiki.cs.wisc.edu/index.cgi/tktview?tn=3829, https://htcondor-wiki.cs.wisc.edu/index.cgi/tktview?tn=1786, https://www.cve.org/CVERecord?id=CVE-2013-4255
Affected packages
Package
Name: condor
Purl: pkg:deb/ubuntu/[email protected]~dfsg.1-1ubuntu1?arch=source&distro=trusty
Affected ranges
Type: ECOSYSTEM
Events:
