Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2020-27746

Опубликовано: 27 нояб. 2020
Источник: debian
EPSS Низкий

Описание

Slurm before 19.05.8 and 20.x before 20.02.6 exposes Sensitive Information to an Unauthorized Actor because xauth for X11 magic cookies is affected by a race condition in a read operation on the /proc filesystem.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
slurm-wlmnot-affectedpackage
slurm-llnlremovedpackage
slurm-llnlnot-affectedstretchpackage

Примечания

  • https://www.schedmd.com/news.php?id=240

  • https://lists.schedmd.com/pipermail/slurm-announce/2020/000045.html

  • https://github.com/SchedMD/slurm/commit/07309deb45c33e735e191faf9dd31cca1054a15c

  • slurm-wlm/20.02.6-1 changed the source package name and included the fix

  • Introduced by: https://github.com/SchedMD/slurm/commit/e3140b7f8d96ced9dc85089caa65dd7c6be396fd (slurm-17-11-0-0rc1)

EPSS

Процентиль: 61%
0.00408
Низкий

Связанные уязвимости

CVSS3: 3.7
ubuntu
около 5 лет назад

Slurm before 19.05.8 and 20.x before 20.02.6 exposes Sensitive Information to an Unauthorized Actor because xauth for X11 magic cookies is affected by a race condition in a read operation on the /proc filesystem.

CVSS3: 3.7
nvd
около 5 лет назад

Slurm before 19.05.8 and 20.x before 20.02.6 exposes Sensitive Information to an Unauthorized Actor because xauth for X11 magic cookies is affected by a race condition in a read operation on the /proc filesystem.

CVSS3: 3.7
github
больше 3 лет назад

Slurm before 19.05.8 and 20.x before 20.02.6 exposes Sensitive Information to an Unauthorized Actor because xauth for X11 magic cookies is affected by a race condition in a read operation on the /proc filesystem.

CVSS3: 3.7
fstec
больше 5 лет назад

Уязвимость менеджера управления ресурсами SLURM, связанная с незащищенным хранением конфиденциальной информации, позволяющая нарушителю получить доступ к конфиденциальным данным

suse-cvrf
около 5 лет назад

Security update for slurm_18_08

EPSS

Процентиль: 61%
0.00408
Низкий