SchedMD Slurm 22.05

CPE Details

SchedMD Slurm 22.05
22.05
2023-11-09
19h11 +00:00
2023-11-09
19h11 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:schedmd:slurm:22.05:-:*:*:*:*:*:*

Informations

Vendor

schedmd

Product

slurm

Version

22.05

Update

-

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2024-48936 2024-10-27 23h00 +00:00 SchedMD Slurm before 24.05.4 has Incorrect Authorization. A mistake in authentication handling in stepmgr could permit an attacker to execute processes under other users' jobs. This is limited to jobs explicitly running with --stepmgr, or on systems that have globally enabled stepmgr via SlurmctldParameters=enable_stepmgr in their configuration.
5
Medium
CVE-2023-49933 2023-12-13 23h00 +00:00 An issue was discovered in SchedMD Slurm 22.05.x, 23.02.x, and 23.11.x. There is Improper Enforcement of Message Integrity During Transmission in a Communication Channel. This allows attackers to modify RPC traffic in a way that bypasses message hash checks. The fixed versions are 22.05.11, 23.02.7, and 23.11.1.
7.5
High
CVE-2023-49936 2023-12-13 23h00 +00:00 An issue was discovered in SchedMD Slurm 22.05.x, 23.02.x, and 23.11.x. A NULL pointer dereference leads to denial of service. The fixed versions are 22.05.11, 23.02.7, and 23.11.1.
7.5
High
CVE-2023-49937 2023-12-13 23h00 +00:00 An issue was discovered in SchedMD Slurm 22.05.x, 23.02.x, and 23.11.x. Because of a double free, attackers can cause a denial of service or possibly execute arbitrary code. The fixed versions are 22.05.11, 23.02.7, and 23.11.1.
9.8
Critical
CVE-2023-41914 2023-11-02 23h00 +00:00 SchedMD Slurm 23.02.x before 23.02.6 and 22.05.x before 22.05.10 allows filesystem race conditions for gaining ownership of a file, overwriting a file, or deleting files.
7
High