Red Hat Enterprise MRG contains an insufficient access restrictions flaw related to the Condor QMF Plug-ins. The may allow a local attacker to submit jobs which will be run as any non-root user.
Classification
Location:
Local Access Required
Attack Type:
Misconfiguration
Impact:
Loss of Integrity
Solution:
Upgrade
Exploit:
Exploit Unknown
Disclosure:
Vendor Verified
Solution
Currently, there are no known workarounds or upgrades to correct this issue. However, Red Hat has released a patch to address this vulnerability. Check the vendor advisory or solution in the references section.