Lucene search

K
cve[email protected]CVE-2011-4930
HistoryFeb 10, 2014 - 6:15 p.m.

CVE-2011-4930

2014-02-1018:15:09
CWE-134
web.nvd.nist.gov
24
cve-2011-4930
format string vulnerabilities
condor
red hat mrg grid
denial of service
arbitrary code
local users

4.4 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:M/Au:N/C:P/I:P/A:P

7.5 High

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

0.4%

Multiple format string vulnerabilities in Condor 7.2.0 through 7.6.4, and possibly certain 7.7.x versions, as used in Red Hat MRG Grid and possibly other products, allow local users to cause a denial of service (condor_schedd daemon and failure to launch jobs) and possibly execute arbitrary code via format string specifiers in (1) the reason for a hold for a job that uses an XML user log, (2) the filename of a file to be transferred, and possibly other unspecified vectors.

Affected configurations

NVD
Node
condor_projectcondorMatch7.2.0
OR
condor_projectcondorMatch7.2.1
OR
condor_projectcondorMatch7.2.2
OR
condor_projectcondorMatch7.2.3
OR
condor_projectcondorMatch7.2.4
OR
condor_projectcondorMatch7.2.5
OR
condor_projectcondorMatch7.3.0
OR
condor_projectcondorMatch7.3.1
OR
condor_projectcondorMatch7.3.2
OR
condor_projectcondorMatch7.4.0
OR
condor_projectcondorMatch7.4.1
OR
condor_projectcondorMatch7.4.2
OR
condor_projectcondorMatch7.5.4
OR
condor_projectcondorMatch7.6.0
OR
condor_projectcondorMatch7.6.1
OR
condor_projectcondorMatch7.6.2
OR
condor_projectcondorMatch7.6.3
OR
condor_projectcondorMatch7.6.4
OR
fedoraprojectfedoraMatch15
OR
fedoraprojectfedoraMatch16
OR
redhatenterprise_mrgMatch1.3
OR
redhatenterprise_mrgMatch2.0

4.4 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:M/Au:N/C:P/I:P/A:P

7.5 High

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

0.4%