The policy definition evaluator in Condor 7.5.4, 8.0.0, and earlier does not properly handle attributes in a (1) PREEMPT, (2) SUSPEND, (3) CONTINUE, (4) WANTVACATE, or (5) KILL policy that evaluate to an Unconfigured, Undefined, or Error state, which allows remote authenticated users to cause a denial of service (condorstartd exit) via a crafted job.
{
"binaries": [
{
"binary_version": "8.0.5~dfsg.1-1ubuntu1",
"binary_name": "htcondor"
},
{
"binary_version": "8.0.5~dfsg.1-1ubuntu1",
"binary_name": "htcondor-dbg"
},
{
"binary_version": "8.0.5~dfsg.1-1ubuntu1",
"binary_name": "htcondor-dev"
},
{
"binary_version": "8.0.5~dfsg.1-1ubuntu1",
"binary_name": "htcondor-doc"
},
{
"binary_version": "8.0.5~dfsg.1-1ubuntu1",
"binary_name": "libclassad-dev"
},
{
"binary_version": "8.0.5~dfsg.1-1ubuntu1",
"binary_name": "libclassad5"
}
],
"availability": "No subscription required"
}
{
"binaries": [
{
"binary_version": "8.4.2~dfsg.1-1build1",
"binary_name": "condor"
},
{
"binary_version": "8.4.2~dfsg.1-1build1",
"binary_name": "condor-dbg"
},
{
"binary_version": "8.4.2~dfsg.1-1build1",
"binary_name": "condor-dev"
},
{
"binary_version": "8.4.2~dfsg.1-1build1",
"binary_name": "condor-doc"
},
{
"binary_version": "8.4.2~dfsg.1-1build1",
"binary_name": "htcondor"
},
{
"binary_version": "8.4.2~dfsg.1-1build1",
"binary_name": "htcondor-dbg"
},
{
"binary_version": "8.4.2~dfsg.1-1build1",
"binary_name": "htcondor-dbgsym"
},
{
"binary_version": "8.4.2~dfsg.1-1build1",
"binary_name": "htcondor-dev"
},
{
"binary_version": "8.4.2~dfsg.1-1build1",
"binary_name": "htcondor-doc"
},
{
"binary_version": "8.4.2~dfsg.1-1build1",
"binary_name": "libclassad-dev"
},
{
"binary_version": "8.4.2~dfsg.1-1build1",
"binary_name": "libclassad7"
},
{
"binary_version": "8.4.2~dfsg.1-1build1",
"binary_name": "libclassad7-dbgsym"
}
],
"availability": "No subscription required"
}
{
"binaries": [
{
"binary_version": "8.6.8~dfsg.1-2",
"binary_name": "htcondor"
},
{
"binary_version": "8.6.8~dfsg.1-2",
"binary_name": "htcondor-dbg"
},
{
"binary_version": "8.6.8~dfsg.1-2",
"binary_name": "htcondor-dev"
},
{
"binary_version": "8.6.8~dfsg.1-2",
"binary_name": "htcondor-doc"
},
{
"binary_version": "8.6.8~dfsg.1-2",
"binary_name": "libclassad-dev"
},
{
"binary_version": "8.6.8~dfsg.1-2",
"binary_name": "libclassad8"
}
],
"availability": "No subscription required"
}