Lucene search

K
osvGoogleOSV:DSA-1776-1
HistoryApr 21, 2009 - 12:00 a.m.

slurm-llnl - privilege escalation

2009-04-2100:00:00
Google
osv.dev
15

EPSS

0.001

Percentile

26.7%

It was discovered that the Simple Linux Utility for Resource Management
(SLURM), a cluster job management and scheduling system, did not drop
the supplemental groups. These groups may be system groups with elevated
privileges, which may allow a valid SLURM user to gain elevated privileges.

The old stable distribution (etch) does not contain a slurm-llnl package.

For the stable distribution (lenny), this problem has been fixed in
version 1.3.6-1lenny3.

For the unstable distribution (sid), this problem has been fixed in
version 1.3.15-1.

We recommend that you upgrade your slurm-llnl package.

EPSS

0.001

Percentile

26.7%