CVEs (24)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
2Debian Schedmd2Debian Linux SlurmNov 21, 2024 May 30, 2018 N/A· v4 5.3 MEDIUM· v3 5.0 MEDIUM· v2 SchedMD Slurm before 17.02.11 and 17.1x.x before 17.11.7 mishandles user names (aka user_name fields) and group ids (aka gid fields). |
2Debian Schedmd2Debian Linux SlurmNov 21, 2024 Mar 15, 2018 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 SchedMD Slurm before 17.02.10 and 17.11.x before 17.11.5 allows SQL Injection attacks against SlurmDBD. |
Insecure SPANK environment variable handling exists in SchedMD Slurm before 16.05.11, 17.x before 17.02.9, and 17.11.x before 17.11.0rc2, allowing privilege escalation to root during Prolog or Epilog execution. |
The _prolog_error function in slurmd/req.c in Slurm before 15.08.13, 16.x before 16.05.7, and 17.x before 17.02.0-pre4 has a vulnerability in how the slurmd daemon informs users of a Prolog failure on a compute node. Tha...Show more |