Wisc (University of Wisconsin) HTCondor 9.0.0

CPE Details

Wisc (University of Wisconsin) HTCondor 9.0.0
9.0.0
2021-07-20
16h07 +00:00
2021-07-21
00h27 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:wisc:htcondor:9.0.0:*:*:*:*:*:*:*

Informations

Vendor

wisc

Product

htcondor

Version

9.0.0

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2022-26110 2022-04-05 23h07 +00:00 An issue was discovered in HTCondor 8.8.x before 8.8.16, 9.0.x before 9.0.10, and 9.1.x before 9.6.0. When a user authenticates to an HTCondor daemon via the CLAIMTOBE method, the user can then impersonate any entity when issuing additional commands to that daemon.
8.8
High
CVE-2021-45104 2022-04-05 23h04 +00:00 An issue was discovered in HTCondor 9.0.x before 9.0.10 and 9.1.x before 9.5.1. An attacker who can capture HTCondor network data can interfere with users' jobs and data.
7.4
High
CVE-2021-45103 2022-04-05 22h55 +00:00 An issue was discovered in HTCondor 9.0.x before 9.0.10 and 9.1.x before 9.5.1. An attacker can access files stored in S3 cloud storage that a user has asked HTCondor to transfer.
8.1
High
CVE-2021-45102 2021-12-16 03h46 +00:00 An issue was discovered in HTCondor 9.0.x before 9.0.4 and 9.1.x before 9.1.2. When authenticating to an HTCondor daemon using a SciToken, a user may be granted authorizations beyond what the token should allow.
8.8
High
CVE-2021-45101 2021-12-16 03h46 +00:00 An issue was discovered in HTCondor before 8.8.15, 9.0.x before 9.0.4, and 9.1.x before 9.1.2. Using standard command-line tools, a user with only READ access to an HTCondor SchedD or Collector daemon can discover secrets that could allow them to control other users' jobs and/or read their data.
8.1
High