CVE-2013-4255
EPSS 1.6%
描述
The policy definition evaluator in Condor 7.5.4, 8.0.0, and earlier does not properly handle attributes in a (1) PREEMPT, (2) SUSPEND, (3) CONTINUE, (4) WANT_VACATE, or (5) KILL policy that evaluate to an Unconfigured, Undefined, or Error state, which allows remote authenticated users to cause a denial of service (condor_startd exit) via a crafted job.
如何修補 CVE-2013-4255
要修補 CVE-2013-4255,請將受影響套件升級到下列已修補版本。
- Debian/condor—升級至 8.0.5~dfsg.1-1 或更新版本
CVE-2013-4255 正在被利用嗎?
低 — EPSS 為 1.6%,目前沒有觀察到大規模利用活動。
受影響套件(1)
- from 0, < 8.0.5~dfsg.1-1