Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hgjx-j8hg-pxrf

Опубликовано: 14 дек. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

An issue was discovered in SchedMD Slurm 22.05.x, 23.02.x, and 23.11.x. There is Improper Enforcement of Message Integrity During Transmission in a Communication Channel. This allows attackers to modify RPC traffic in a way that bypasses message hash checks. The fixed versions are 22.05.11, 23.02.7, and 23.11.1.

An issue was discovered in SchedMD Slurm 22.05.x, 23.02.x, and 23.11.x. There is Improper Enforcement of Message Integrity During Transmission in a Communication Channel. This allows attackers to modify RPC traffic in a way that bypasses message hash checks. The fixed versions are 22.05.11, 23.02.7, and 23.11.1.

EPSS

Процентиль: 28%
0.001
Низкий

7.5 High

CVSS3

Дефекты

CWE-924

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 2 лет назад

An issue was discovered in SchedMD Slurm 22.05.x, 23.02.x, and 23.11.x. There is Improper Enforcement of Message Integrity During Transmission in a Communication Channel. This allows attackers to modify RPC traffic in a way that bypasses message hash checks. The fixed versions are 22.05.11, 23.02.7, and 23.11.1.

CVSS3: 7.5
nvd
около 2 лет назад

An issue was discovered in SchedMD Slurm 22.05.x, 23.02.x, and 23.11.x. There is Improper Enforcement of Message Integrity During Transmission in a Communication Channel. This allows attackers to modify RPC traffic in a way that bypasses message hash checks. The fixed versions are 22.05.11, 23.02.7, and 23.11.1.

CVSS3: 7.5
debian
около 2 лет назад

An issue was discovered in SchedMD Slurm 22.05.x, 23.02.x, and 23.11.x ...

CVSS3: 7.5
fstec
около 2 лет назад

Уязвимость менеджера управления ресурсами Slurm, связанная с недостаточной реализацией целостности сообщений при их передаче в канал связи, позволяющая нарушителю модифицировать RPC-трафик таким образом, чтобы обойти проверку хэша сообщений

suse-cvrf
около 2 лет назад

Security update for slurm

EPSS

Процентиль: 28%
0.001
Низкий

7.5 High

CVSS3

Дефекты

CWE-924