DEBIAN-CVE-2012-3493

Source
https://security-tracker.debian.org/tracker/CVE-2012-3493
Import Source
https://storage.googleapis.com/osv-test-debian-osv/debian-cve-osv/DEBIAN-CVE-2012-3493.json
JSON Data
https://api.test.osv.dev/v1/vulns/DEBIAN-CVE-2012-3493
Upstream
Published
2012-09-28T17:55:01.350Z
Modified
2025-11-14T04:01:26.164687Z
Summary
[none]
Details

The commandgiverequestad function in condorstartd.V6/command.cpp Condor 7.6.x before 7.6.10 and 7.8.x before 7.8.4 allows remote attackers to obtain sensitive information, and possibly control or start arbitrary jobs, via a ClassAd request to the condor_startd port, which leaks the ClaimId.

References

Affected packages

Debian:13 / condor

Package

Name
condor
Purl
pkg:deb/debian/condor?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
7.8.2~dfsg.1-1+deb7u1

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:14 / condor

Package

Name
condor
Purl
pkg:deb/debian/condor?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
7.8.2~dfsg.1-1+deb7u1

Ecosystem specific

{
    "urgency": "not yet assigned"
}