First published: Wed Jan 27 2021(Updated: )
condor_credd in HTCondor before 8.9.11 allows Directory Traversal outside the SEC_CREDENTIAL_DIRECTORY_OAUTH directory, as demonstrated by creating a file under /etc that will later be executed by root.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Wisc Htcondor | >=8.9.7<8.9.11 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.