Show plain JSON{"acknowledgement": "This issue was discovered by Daniel Horak (Red Hat Enterprise MRG Quality Engineering Team).", "affected_release": [{"advisory": "RHSA-2013:0564", "cpe": "cpe:/a:redhat:enterprise_mrg:2::el5", "package": "condor-0:7.8.8-0.4.1.el5", "product_name": "MRG for RHEL-5 v. 2", "release_date": "2013-03-06T00:00:00Z"}, {"advisory": "RHSA-2013:0564", "cpe": "cpe:/a:redhat:enterprise_mrg:2::el5", "package": "condor-ec2-enhanced-0:1.3.0-2.el5", "product_name": "MRG for RHEL-5 v. 2", "release_date": "2013-03-06T00:00:00Z"}, {"advisory": "RHSA-2013:0564", "cpe": "cpe:/a:redhat:enterprise_mrg:2::el5", "package": "condor-ec2-enhanced-hooks-0:1.3.0-3.el5", "product_name": "MRG for RHEL-5 v. 2", "release_date": "2013-03-06T00:00:00Z"}, {"advisory": "RHSA-2013:0564", "cpe": "cpe:/a:redhat:enterprise_mrg:2::el5", "package": "condor-job-hooks-0:1.5-6.el5", "product_name": "MRG for RHEL-5 v. 2", "release_date": "2013-03-06T00:00:00Z"}, {"advisory": "RHSA-2013:0564", "cpe": "cpe:/a:redhat:enterprise_mrg:2::el5", "package": "condor-low-latency-0:1.2-3.el5", "product_name": "MRG for RHEL-5 v. 2", "release_date": "2013-03-06T00:00:00Z"}, {"advisory": "RHSA-2013:0564", "cpe": "cpe:/a:redhat:enterprise_mrg:2::el5", "package": "condor-wallaby-0:5.0.5-2.el5", "product_name": "MRG for RHEL-5 v. 2", "release_date": "2013-03-06T00:00:00Z"}, {"advisory": "RHSA-2013:0564", "cpe": "cpe:/a:redhat:enterprise_mrg:2::el5", "package": "condor-wallaby-base-db-0:1.25-1.el5", "product_name": "MRG for RHEL-5 v. 2", "release_date": "2013-03-06T00:00:00Z"}, {"advisory": "RHSA-2013:0564", "cpe": "cpe:/a:redhat:enterprise_mrg:2::el5", "package": "cumin-0:0.1.5675-1.el5", "product_name": "MRG for RHEL-5 v. 2", "release_date": "2013-03-06T00:00:00Z"}, {"advisory": "RHSA-2013:0564", "cpe": "cpe:/a:redhat:enterprise_mrg:2::el5", "package": "python-boto-0:2.3.0-1.1.el5", "product_name": "MRG for RHEL-5 v. 2", "release_date": "2013-03-06T00:00:00Z"}, {"advisory": "RHSA-2013:0564", "cpe": "cpe:/a:redhat:enterprise_mrg:2::el5", "package": "ruby-rhubarb-0:0.4.3-5.el5", "product_name": "MRG for RHEL-5 v. 2", "release_date": "2013-03-06T00:00:00Z"}, {"advisory": "RHSA-2013:0564", "cpe": "cpe:/a:redhat:enterprise_mrg:2::el5", "package": "ruby-spqr-0:0.3.6-3.el5", "product_name": "MRG for RHEL-5 v. 2", "release_date": "2013-03-06T00:00:00Z"}, {"advisory": "RHSA-2013:0564", "cpe": "cpe:/a:redhat:enterprise_mrg:2::el5", "package": "sesame-0:1.0-7.el5", "product_name": "MRG for RHEL-5 v. 2", "release_date": "2013-03-06T00:00:00Z"}, {"advisory": "RHSA-2013:0564", "cpe": "cpe:/a:redhat:enterprise_mrg:2::el5", "package": "wallaby-0:0.16.3-1.el5", "product_name": "MRG for RHEL-5 v. 2", "release_date": "2013-03-06T00:00:00Z"}, {"advisory": "RHSA-2013:0565", "cpe": "cpe:/a:redhat:enterprise_mrg:2:server:el6", "package": "condor-0:7.8.8-0.4.1.el6", "product_name": "Red Hat Enterprise MRG 2", "release_date": "2013-03-06T00:00:00Z"}, {"advisory": "RHSA-2013:0565", "cpe": "cpe:/a:redhat:enterprise_mrg:2:server:el6", "package": "condor-ec2-enhanced-0:1.3.0-2.el6", "product_name": "Red Hat Enterprise MRG 2", "release_date": "2013-03-06T00:00:00Z"}, {"advisory": "RHSA-2013:0565", "cpe": "cpe:/a:redhat:enterprise_mrg:2:server:el6", "package": "condor-ec2-enhanced-hooks-0:1.3.0-3.el6", "product_name": "Red Hat Enterprise MRG 2", "release_date": "2013-03-06T00:00:00Z"}, {"advisory": "RHSA-2013:0565", "cpe": "cpe:/a:redhat:enterprise_mrg:2:server:el6", "package": "condor-job-hooks-0:1.5-6.el6", "product_name": "Red Hat Enterprise MRG 2", "release_date": "2013-03-06T00:00:00Z"}, {"advisory": "RHSA-2013:0565", "cpe": "cpe:/a:redhat:enterprise_mrg:2:server:el6", "package": "condor-low-latency-0:1.2-3.el6", "product_name": "Red Hat Enterprise MRG 2", "release_date": "2013-03-06T00:00:00Z"}, {"advisory": "RHSA-2013:0565", "cpe": "cpe:/a:redhat:enterprise_mrg:2:server:el6", "package": "condor-wallaby-0:5.0.5-2.el6", "product_name": "Red Hat Enterprise MRG 2", "release_date": "2013-03-06T00:00:00Z"}, {"advisory": "RHSA-2013:0565", "cpe": "cpe:/a:redhat:enterprise_mrg:2:server:el6", "package": "condor-wallaby-base-db-0:1.25-1.el6_3", "product_name": "Red Hat Enterprise MRG 2", "release_date": "2013-03-06T00:00:00Z"}, {"advisory": "RHSA-2013:0565", "cpe": "cpe:/a:redhat:enterprise_mrg:2:server:el6", "package": "cumin-0:0.1.5675-1.el6", "product_name": "Red Hat Enterprise MRG 2", "release_date": "2013-03-06T00:00:00Z"}, {"advisory": "RHSA-2013:0565", "cpe": "cpe:/a:redhat:enterprise_mrg:2:server:el6", "package": "deltacloud-core-0:0.5.0-11.el6cf", "product_name": "Red Hat Enterprise MRG 2", "release_date": "2013-03-06T00:00:00Z"}, {"advisory": "RHSA-2013:0565", "cpe": "cpe:/a:redhat:enterprise_mrg:2:server:el6", "package": "rubygem-nokogiri-0:1.5.0-0.9.beta4.el6cf", "product_name": "Red Hat Enterprise MRG 2", "release_date": "2013-03-06T00:00:00Z"}, {"advisory": "RHSA-2013:0565", "cpe": "cpe:/a:redhat:enterprise_mrg:2:server:el6", "package": "rubygem-rack-1:1.3.0-3.el6cf", "product_name": "Red Hat Enterprise MRG 2", "release_date": "2013-03-06T00:00:00Z"}, {"advisory": "RHSA-2013:0565", "cpe": "cpe:/a:redhat:enterprise_mrg:2:server:el6", "package": "ruby-rhubarb-0:0.4.3-5.el6", "product_name": "Red Hat Enterprise MRG 2", "release_date": "2013-03-06T00:00:00Z"}, {"advisory": "RHSA-2013:0565", "cpe": "cpe:/a:redhat:enterprise_mrg:2:server:el6", "package": "ruby-spqr-0:0.3.6-3.el6", "product_name": "Red Hat Enterprise MRG 2", "release_date": "2013-03-06T00:00:00Z"}, {"advisory": "RHSA-2013:0565", "cpe": "cpe:/a:redhat:enterprise_mrg:2:server:el6", "package": "sesame-0:1.0-8.el6", "product_name": "Red Hat Enterprise MRG 2", "release_date": "2013-03-06T00:00:00Z"}, {"advisory": "RHSA-2013:0565", "cpe": "cpe:/a:redhat:enterprise_mrg:2:server:el6", "package": "wallaby-0:0.16.3-1.el6", "product_name": "Red Hat Enterprise MRG 2", "release_date": "2013-03-06T00:00:00Z"}], "bugzilla": {"description": "condor: DoS when removing jobs via jobcontrol.py when job id is in square brackets", "id": "860850", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=860850"}, "csaw": false, "cvss": {"cvss_base_score": "3.5", "cvss_scoring_vector": "AV:N/AC:M/Au:S/C:N/I:N/A:P", "status": "verified"}, "details": ["aviary/jobcontrol.py in Condor, as used in Red Hat Enterprise MRG 2.3, when removing a job, allows remote attackers to cause a denial of service (condor_schedd restart) via square brackets in the cproc option."], "name": "CVE-2012-4462", "package_state": [{"cpe": "cpe:/a:redhat:enterprise_mrg:1", "fix_state": "Will not fix", "package_name": "condor", "product_name": "Red Hat Enterprise MRG 1"}], "public_date": "2012-09-28T00:00:00Z", "references": ["https://www.cve.org/CVERecord?id=CVE-2012-4462\nhttps://nvd.nist.gov/vuln/detail/CVE-2012-4462"], "statement": "The Red Hat Security Response Team has rated this issue as having low security impact. A future update may address this issue. For additional information, refer to the Issue Severity Classification: https://access.redhat.com/security/updates/classification/.", "threat_severity": "Low"}