CVE-2008-3424: High severity htcondor vulnerability
Condor before 7.0.4 does not properly handle wildcards in the ALLOWWRITE, DENYWRITE, HOSTALLOWWRITE, or HOSTDENYWRITE configuration variables in authorization policy lists, which might allow remote attackers to bypass intended access restrictions.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2008-3424?
CVE-2008-3424 has been classified as a high-severity vulnerability due to its potential to allow unauthorized access.
How do I fix CVE-2008-3424?
To fix CVE-2008-3424, upgrade Condor to version 7.0.4 or higher, which addresses the wildcard handling issue.
What systems are affected by CVE-2008-3424?
CVE-2008-3424 affects Condor versions prior to 7.0.4 and certain Fedora 9 installations.
Can CVE-2008-3424 be exploited remotely?
Yes, CVE-2008-3424 can be exploited remotely by attackers to bypass intended access restrictions.
What impact does CVE-2008-3424 have on authorization policies?
CVE-2008-3424 undermines the effectiveness of authorization policies by allowing wildcard bypasses in critical configuration variables.