Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2021-43337

Опубликовано: 17 нояб. 2021
Источник: debian
EPSS Низкий

Описание

SchedMD Slurm 21.08.* before 21.08.4 has Incorrect Access Control. On sites using the new AccountingStoreFlags=job_script and/or job_env options, the access control rules in SlurmDBD may permit users to request job scripts and environment files to which they should not have access.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
slurm-wlmnot-affectedpackage

Примечания

  • https://lists.schedmd.com/pipermail/slurm-announce/2021/000068.html

  • https://www.schedmd.com/news.php?id=256

EPSS

Процентиль: 67%
0.00531
Низкий

Связанные уязвимости

CVSS3: 6.5
ubuntu
около 4 лет назад

SchedMD Slurm 21.08.* before 21.08.4 has Incorrect Access Control. On sites using the new AccountingStoreFlags=job_script and/or job_env options, the access control rules in SlurmDBD may permit users to request job scripts and environment files to which they should not have access.

CVSS3: 6.5
nvd
около 4 лет назад

SchedMD Slurm 21.08.* before 21.08.4 has Incorrect Access Control. On sites using the new AccountingStoreFlags=job_script and/or job_env options, the access control rules in SlurmDBD may permit users to request job scripts and environment files to which they should not have access.

CVSS3: 6.5
github
больше 3 лет назад

SchedMD Slurm 21.08.* before 21.08.4 has Incorrect Access Control. On sites using the new AccountingStoreFlags=job_script and/or job_env options, the access control rules in SlurmDBD may permit users to request job scripts and environment files to which they should not have access.

suse-cvrf
около 3 лет назад

Recommended update for pdsh, slurm_22_05

suse-cvrf
около 3 лет назад

Recommended update for pdsh, slurm_22_05

EPSS

Процентиль: 67%
0.00531
Низкий