The policy definition evaluator in Condor 7.5.4, 8.0.0, and earlier does not properly handle attributes in a (1) PREEMPT, (2) SUSPEND, (3) CONTINUE, (4) WANTVACATE, or (5) KILL policy that evaluate to an Unconfigured, Undefined, or Error state, which allows remote authenticated users to cause a denial of service (condorstartd exit) via a crafted job.
{ "binaries": [ { "binary_name": "htcondor", "binary_version": "8.0.5~dfsg.1-1ubuntu1" }, { "binary_name": "htcondor-dbg", "binary_version": "8.0.5~dfsg.1-1ubuntu1" }, { "binary_name": "htcondor-dev", "binary_version": "8.0.5~dfsg.1-1ubuntu1" }, { "binary_name": "htcondor-doc", "binary_version": "8.0.5~dfsg.1-1ubuntu1" }, { "binary_name": "libclassad-dev", "binary_version": "8.0.5~dfsg.1-1ubuntu1" }, { "binary_name": "libclassad5", "binary_version": "8.0.5~dfsg.1-1ubuntu1" } ], "ubuntu_priority": "high", "availability": "No subscription required" }
{ "binaries": [ { "binary_name": "condor", "binary_version": "8.4.2~dfsg.1-1build1" }, { "binary_name": "condor-dbg", "binary_version": "8.4.2~dfsg.1-1build1" }, { "binary_name": "condor-dev", "binary_version": "8.4.2~dfsg.1-1build1" }, { "binary_name": "condor-doc", "binary_version": "8.4.2~dfsg.1-1build1" }, { "binary_name": "htcondor", "binary_version": "8.4.2~dfsg.1-1build1" }, { "binary_name": "htcondor-dbg", "binary_version": "8.4.2~dfsg.1-1build1" }, { "binary_name": "htcondor-dbgsym", "binary_version": "8.4.2~dfsg.1-1build1" }, { "binary_name": "htcondor-dev", "binary_version": "8.4.2~dfsg.1-1build1" }, { "binary_name": "htcondor-doc", "binary_version": "8.4.2~dfsg.1-1build1" }, { "binary_name": "libclassad-dev", "binary_version": "8.4.2~dfsg.1-1build1" }, { "binary_name": "libclassad7", "binary_version": "8.4.2~dfsg.1-1build1" }, { "binary_name": "libclassad7-dbgsym", "binary_version": "8.4.2~dfsg.1-1build1" } ], "ubuntu_priority": "high", "availability": "No subscription required" }
{ "binaries": [ { "binary_name": "htcondor", "binary_version": "8.6.8~dfsg.1-2" }, { "binary_name": "htcondor-dbg", "binary_version": "8.6.8~dfsg.1-2" }, { "binary_name": "htcondor-dev", "binary_version": "8.6.8~dfsg.1-2" }, { "binary_name": "htcondor-doc", "binary_version": "8.6.8~dfsg.1-2" }, { "binary_name": "libclassad-dev", "binary_version": "8.6.8~dfsg.1-2" }, { "binary_name": "libclassad8", "binary_version": "8.6.8~dfsg.1-2" } ], "ubuntu_priority": "high", "availability": "No subscription required" }