Описание
SchedMD Slurm 21.08.x through 20.11.x has Incorrect Access Control that leads to Escalation of Privileges and code execution.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| slurm-wlm | fixed | 21.08.8.2-1 | package | |
| slurm-llnl | removed | package | ||
| slurm-llnl | no-dsa | buster | package |
Примечания
https://lists.schedmd.com/pipermail/slurm-announce/2022/000072.html
https://github.com/SchedMD/slurm/commit/ef62acfd2a566afc5187c554e908e4aa975211a1 (slurm-21-08-8-1)
https://github.com/SchedMD/slurm/commit/863c763c241db46039c27c4b7438ef5d33defb12 (slurm-20-11-9-1)
EPSS
Связанные уязвимости
SchedMD Slurm 21.08.x through 20.11.x has Incorrect Access Control that leads to Escalation of Privileges and code execution.
SchedMD Slurm 21.08.x through 20.11.x has Incorrect Access Control that leads to Escalation of Privileges and code execution.
SchedMD Slurm 21.08.x through 20.11.x has Incorrect Access Control that leads to Escalation of Privileges and code execution.
Уязвимость менеджера управления ресурсами Slurm, связанная с недостатками процедуры аутентификации, позволяющая нарушителю обойти существующие ограничения безопасности
EPSS