Lucene search

K
ubuntucveUbuntu.comUB:CVE-2009-2084
HistoryJun 16, 2009 - 12:00 a.m.

CVE-2009-2084

2009-06-1600:00:00
ubuntu.com
ubuntu.com
8

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

EPSS

0.001

Percentile

26.7%

Simple Linux Utility for Resource Management (SLURM) 1.2 and 1.3 before
1.3.14 does not properly set supplementary groups before invoking (1)
sbcast from the slurmd daemon or (2) strigger from the slurmctld daemon,
which might allow local SLURM users to modify files and gain privileges.

OSVersionArchitecturePackageVersionFilename
ubuntu8.10noarchslurm-llnl< 1.3.6-1lenny3build0.8.10.1UNKNOWN

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

EPSS

0.001

Percentile

26.7%