SchedMD Slurm 22.05.7

CPE Details

SchedMD Slurm 22.05.7
22.05.7
2023-11-09
19h11 +00:00
2023-11-09
19h11 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:schedmd:slurm:22.05.7:*:*:*:*:*:*:*

Informations

Vendor

schedmd

Product

slurm

Version

22.05.7

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2024-48936 2024-10-27 23h00 +00:00 SchedMD Slurm before 24.05.4 has Incorrect Authorization. A mistake in authentication handling in stepmgr could permit an attacker to execute processes under other users' jobs. This is limited to jobs explicitly running with --stepmgr, or on systems that have globally enabled stepmgr via SlurmctldParameters=enable_stepmgr in their configuration.
5
Medium
CVE-2023-49933 2023-12-13 23h00 +00:00 An issue was discovered in SchedMD Slurm 22.05.x, 23.02.x, and 23.11.x. There is Improper Enforcement of Message Integrity During Transmission in a Communication Channel. This allows attackers to modify RPC traffic in a way that bypasses message hash checks. The fixed versions are 22.05.11, 23.02.7, and 23.11.1.
7.5
High
CVE-2023-49936 2023-12-13 23h00 +00:00 An issue was discovered in SchedMD Slurm 22.05.x, 23.02.x, and 23.11.x. A NULL pointer dereference leads to denial of service. The fixed versions are 22.05.11, 23.02.7, and 23.11.1.
7.5
High
CVE-2023-49937 2023-12-13 23h00 +00:00 An issue was discovered in SchedMD Slurm 22.05.x, 23.02.x, and 23.11.x. Because of a double free, attackers can cause a denial of service or possibly execute arbitrary code. The fixed versions are 22.05.11, 23.02.7, and 23.11.1.
9.8
Critical
CVE-2023-49938 2023-12-13 23h00 +00:00 An issue was discovered in SchedMD Slurm 22.05.x and 23.02.x. There is Incorrect Access Control: an attacker can modified their extended group list that is used with the sbcast subsystem, and open files with an unauthorized set of extended groups. The fixed versions are 22.05.11 and 23.02.7.
8.2
High
CVE-2023-41914 2023-11-02 23h00 +00:00 SchedMD Slurm 23.02.x before 23.02.6 and 22.05.x before 22.05.10 allows filesystem race conditions for gaining ownership of a file, overwriting a file, or deleting files.
7
High