Vulnerability Description
An issue was discovered in HTCondor before 8.8.15, 9.0.x before 9.0.4, and 9.1.x before 9.1.2. Using standard command-line tools, a user with only READ access to an HTCondor SchedD or Collector daemon can discover secrets that could allow them to control other users' jobs and/or read their data.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Wisc | Htcondor | <= 8.8.13 |
References
- https://research.cs.wisc.edu/htcondor/security/vulnerabilities/HTCONDOR-2021-000Vendor Advisory
- https://research.cs.wisc.edu/htcondor/security/vulnerabilities/HTCONDOR-2021-000Vendor Advisory
FAQ
What is CVE-2021-45101?
CVE-2021-45101 is a vulnerability with a CVSS score of 8.1 (HIGH). An issue was discovered in HTCondor before 8.8.15, 9.0.x before 9.0.4, and 9.1.x before 9.1.2. Using standard command-line tools, a user with only READ access to an HTCondor SchedD or Collector daemon...
How severe is CVE-2021-45101?
CVE-2021-45101 has been rated HIGH with a CVSS base score of 8.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2021-45101?
Check the references section above for vendor advisories and patch information. Affected products include: Wisc Htcondor.