First published: Wed Apr 06 2022(Updated: )
An issue was discovered in HTCondor 9.0.x before 9.0.10 and 9.1.x before 9.5.1. An attacker can access files stored in S3 cloud storage that a user has asked HTCondor to transfer.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
HTCondor | >=8.9.4<9.0.10 | |
HTCondor | >=9.1.0<9.6.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-45103 has been classified as a medium severity vulnerability.
To fix CVE-2021-45103, upgrade HTCondor to version 9.0.10 or later, or to version 9.5.1 or later.
The impact of CVE-2021-45103 allows an attacker to access sensitive S3 cloud storage files during HTCondor transfers.
HTCondor versions 9.0.x before 9.0.10 and 9.1.x before 9.5.1 are affected by CVE-2021-45103.
There are no known workarounds for CVE-2021-45103, so upgrading is recommended.