CVE-2021-45101: High severity htcondor vulnerability
An issue was discovered in HTCondor before 8.8.15, 9.0.x before 9.0.4, and 9.1.x before 9.1.2. Using standard command-line tools, a user with only READ access to an HTCondor SchedD or Collector daemon can discover secrets that could allow them to control other users' jobs and/or read their data.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-45101?
CVE-2021-45101 is considered a high-severity vulnerability due to the potential for unauthorized access to sensitive user data.
How do I fix CVE-2021-45101?
To fix CVE-2021-45101, upgrade your HTCondor version to 8.8.15, 9.0.4, or 9.1.2 or later.
What systems are affected by CVE-2021-45101?
CVE-2021-45101 affects HTCondor versions prior to 8.8.15, between 9.0.0 and 9.0.2, and exactly 9.1.0.
What type of access does a user need to exploit CVE-2021-45101?
A user only needs READ access to an HTCondor SchedD or Collector daemon to exploit CVE-2021-45101.
What are the potential consequences of CVE-2021-45101?
The consequences of CVE-2021-45101 include the ability to control other users' jobs and read their data.