Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.61732
Category:Fedora Local Security Checks
Title:Fedora Core 9 FEDORA-2008-8733 (condor)
Summary:NOSUMMARY
Description:Description:

The remote host is missing an update to condor
announced via advisory FEDORA-2008-8733.

Update Information:

Security update, fixes security issues rebasing on 7.0.5
ChangeLog:

* Wed Oct 8 2008 - 7.0.5-1
- Rebased on 7.0.5, security update
* Wed Aug 6 2008 - 7.0.4-1
- Updated to 7.0.4 source
- Stopped using condor_configure in install step
* Tue Jun 10 2008 - 7.0.2-1

References:

[ 1 ] Bug #463987 - CVE-2008-3826 condor: users can run jobs with arbitrary owners
https://bugzilla.redhat.com/show_bug.cgi?id=463987
[ 2 ] Bug #463990 - CVE-2008-3828 condor: buffer overflow in lookup_macro
https://bugzilla.redhat.com/show_bug.cgi?id=463990
[ 3 ] Bug #463995 - CVE-2008-3829 condor: denial of service attack on Schedd via corrupt logfile
https://bugzilla.redhat.com/show_bug.cgi?id=463995
[ 4 ] Bug #463997 - CVE-2008-3830 condor: allow or deny with overlapping netmasks may be ignored
https://bugzilla.redhat.com/show_bug.cgi?id=463997

Solution: Apply the appropriate updates.

This update can be installed with the yum update program. Use
su -c 'yum update condor' at the command line.
For more information, refer to Managing Software with yum,
available at http://docs.fedoraproject.org/yum/.

http://www.securityspace.com/smysecure/catid.html?in=FEDORA-2008-8733

Risk factor : High

CVSS Score:
7.2

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2008-3826
1021002
http://www.securitytracker.com/id?1021002
31621
http://www.securityfocus.com/bid/31621
32189
http://secunia.com/advisories/32189
32193
http://secunia.com/advisories/32193
32232
http://secunia.com/advisories/32232
ADV-2008-2760
http://www.vupen.com/english/advisories/2008/2760
FEDORA-2008-8733
https://www.redhat.com/archives/fedora-package-announce/2008-October/msg00264.html
RHSA-2008:0911
http://www.redhat.com/support/errata/RHSA-2008-0911.html
RHSA-2008:0924
http://www.redhat.com/support/errata/RHSA-2008-0924.html
http://www.cs.wisc.edu/condor/manual/v7.0/8_3Stable_Release.html#SECTION00931000000000000000
Common Vulnerability Exposure (CVE) ID: CVE-2008-3828
Common Vulnerability Exposure (CVE) ID: CVE-2008-3829
Common Vulnerability Exposure (CVE) ID: CVE-2008-3830
CopyrightCopyright (c) 2008 E-Soft Inc. http://www.securityspace.com

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.