CVE-2008-3830: High severity htcondor vulnerability
Published Oct 8, 2008
·Updated
Condor before 7.0.5 does not properly handle when the configuration specifies overlapping netmasks in allow or deny rules, which causes the rule to be ignored and allows attackers to bypass intended access restrictions.
Affected Software
15 affected components
Condor Project Condor<=7.0.4
Condor Project Condor=6.8.0
Condor Project Condor=6.8.1
Condor Project Condor=6.8.2
Condor Project Condor=6.8.3
Condor Project Condor=6.8.4
Condor Project Condor=6.8.5
Condor Project Condor=6.8.6
Condor Project Condor=6.8.7
Condor Project Condor=6.8.8
Condor Project Condor=6.8.9
Condor Project Condor=7.0.0
Condor Project Condor=7.0.1
Condor Project Condor=7.0.2
Condor Project Condor=7.0.3
Event History
Oct 8, 2008
CVE Published
via MITRE·08:44 PM
Data Sourced
via MITRE·08:44 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-3830?
CVE-2008-3830 is classified as a medium severity vulnerability due to its potential to allow unauthorized access.
2
How do I fix CVE-2008-3830?
To fix CVE-2008-3830, upgrade to HTCondor version 7.0.5 or later.
3
What specific versions of HTCondor are affected by CVE-2008-3830?
CVE-2008-3830 affects HTCondor versions up to 7.0.4 and all 6.8.x versions.
4
What does CVE-2008-3830 exploit in HTCondor?
CVE-2008-3830 exploits the improper handling of overlapping netmasks in allow or deny rules.
5
Can CVE-2008-3830 lead to data breaches?
Yes, CVE-2008-3830 can potentially lead to unauthorized access, which may result in data breaches.