DSA-1776-1 slurm-llnl -- programming errorID: oval:org.secpod.oval:def:600360 | Date: (C)2011-05-13 (M)2022-10-10 |
Class: PATCH | Family: unix |
It was discovered that the Simple Linux Utility for Resource Management , a cluster job management and scheduling system, did not drop the supplemental groups. These groups may be system groups with elevated privileges, which may allow a valid SLURM user to gain elevated privileges. The old stable distribution does not contain a slurm-llnl package. For the stable distribution , this problem has been fixed in version 1.3.6-1lenny3. For the unstable distribution , this problem has been fixed in version 1.3.15-1. We recommend that you upgrade your slurm-llnl package.