Vulnerabilities > Condor Project > Condor > 7.8.2

DATE CVE VULNERABILITY TITLE RISK
2014-06-06 CVE-2012-5390 Permissions, Privileges, and Access Controls vulnerability in Condor Project Condor
The standard universe shadow (condor_shadow.std) component in Condor 7.7.3 through 7.7.6, 7.8.0 before 7.8.5, and 7.9.0 does no properly check privileges, which allows remote attackers to gain privileges via a crafted standard universe job.
network
low complexity
condor-project CWE-264
critical
10.0
2013-10-11 CVE-2013-4255 Improper Input Validation vulnerability in multiple products
The policy definition evaluator in Condor 7.5.4, 8.0.0, and earlier does not properly handle attributes in a (1) PREEMPT, (2) SUSPEND, (3) CONTINUE, (4) WANT_VACATE, or (5) KILL policy that evaluate to an Unconfigured, Undefined, or Error state, which allows remote authenticated users to cause a denial of service (condor_startd exit) via a crafted job.
3.5
2012-09-28 CVE-2012-5197 Unspecified vulnerability in Condor Project Condor
Multiple unspecified vulnerabilities in Condor 7.6.x before 7.6.10 and 7.8.x before 7.8.4 have unknown impact and attack vectors related to "error checking of system calls."
network
low complexity
condor-project
critical
10.0
2012-09-28 CVE-2012-5196 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Condor Project Condor
Multiple buffer overflows in Condor 7.6.x before 7.6.10 and 7.8.x before 7.8.4 have unknown impact and attack vectors.
network
low complexity
condor-project CWE-119
critical
10.0