Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2017-15566

Опубликовано: 01 нояб. 2017
Источник: ubuntu
Приоритет: high
EPSS Низкий
CVSS2: 7.2
CVSS3: 7.8

Описание

Insecure SPANK environment variable handling exists in SchedMD Slurm before 16.05.11, 17.x before 17.02.9, and 17.11.x before 17.11.0rc2, allowing privilege escalation to root during Prolog or Epilog execution.

РелизСтатусПримечание
artful

ignored

end of life
bionic

not-affected

17.11.2-1build1
cosmic

not-affected

17.11.2-1build1
devel

DNE

disco

not-affected

17.11.2-1build1
eoan

DNE

esm-apps-legacy/xenial

released

15.08.7-1ubuntu0.1~esm3
esm-apps/bionic

not-affected

17.11.2-1build1
esm-apps/focal

not-affected

19.05.3.2-2
esm-apps/xenial

released

15.08.7-1ubuntu0.1~esm3

Показывать по

EPSS

Процентиль: 46%
0.00578
Низкий

7.2 High

CVSS2

7.8 High

CVSS3

Связанные уязвимости

CVSS3: 7.8
nvd
почти 9 лет назад

Insecure SPANK environment variable handling exists in SchedMD Slurm before 16.05.11, 17.x before 17.02.9, and 17.11.x before 17.11.0rc2, allowing privilege escalation to root during Prolog or Epilog execution.

CVSS3: 7.8
debian
почти 9 лет назад

Insecure SPANK environment variable handling exists in SchedMD Slurm b ...

suse-cvrf
почти 9 лет назад

Security update for slurm

CVSS3: 7.8
github
больше 4 лет назад

Insecure SPANK environment variable handling exists in SchedMD Slurm before 16.05.11, 17.x before 17.02.9, and 17.11.x before 17.11.0rc2, allowing privilege escalation to root during Prolog or Epilog execution.

CVSS3: 7.8
fstec
почти 9 лет назад

Уязвимость менеджера управления ресурсами Slurm, связанная с некорректной обработкой переменной окружения SPANK, позволяющая нарушителю повысить свои привилегии

EPSS

Процентиль: 46%
0.00578
Низкий

7.2 High

CVSS2

7.8 High

CVSS3