Security Advisory

CVE-2013-4255

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2013-10-11 22:00:00
Last updated 2024-08-06 16:38:01
Assigner redhat
State PUBLISHED

Description

The policy definition evaluator in Condor 7.5.4, 8.0.0, and earlier does not properly handle attributes in a (1) PREEMPT, (2) SUSPEND, (3) CONTINUE, (4) WANT_VACATE, or (5) KILL policy that evaluate to an Unconfigured, Undefined, or Error state, which allows remote authenticated users to cause a denial of service (condor_startd exit) via a crafted job.