CVE-2012-3459: Medium severity Trevor Mckay Cumin vulnerability
Cumin before 0.1.5444, as used in Red Hat Enterprise Messaging, Realtime, and Grid (MRG) 2.0, allows remote authenticated users to modify Condor attributes and possibly gain privileges via crafted additional parameters in an HTTP POST request, which triggers a job attribute change request to Condor.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-3459?
CVE-2012-3459 is considered to be of high severity due to its potential to allow remote authenticated users to gain elevated privileges.
How do I fix CVE-2012-3459?
To fix CVE-2012-3459, it is recommended to upgrade to the latest version of Cumin where this vulnerability is patched.
Who is affected by CVE-2012-3459?
CVE-2012-3459 affects multiple versions of Cumin, specifically versions prior to 0.1.5444.
What systems use Cumin and are at risk for CVE-2012-3459?
Cumin is used in Red Hat Enterprise Messaging, Realtime, and Grid (MRG) 2.0, which are at risk for CVE-2012-3459.
What type of attacks can exploit CVE-2012-3459?
CVE-2012-3459 can be exploited through crafted HTTP POST requests that modify Condor attributes.