|
A vulnerability was identified in Red Hat Enterprise MRG Grid. The issue is that broker authentication credentials is written to the Cumin log file and a local user can access the file to get hold of the broker username and password. This vulnerability can be exploited to connect to the broker's schedule jobs, set the attributes on jobs, make modifications regarding jobs and carry out other privilege operations.
Source:
Security Tracker
http://www.securitytracker.com/id/1026021
Red Hat Customer Portal
http://rhn.redhat.com/errata/RHSA-2011-1249.html
Disclaimer The information provided herein is on "as is" basis, without warranty of any kind.
|