[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248392

 
 

909

 
 

195452

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

DSA-1776-1 slurm-llnl -- programming error

ID: oval:org.secpod.oval:def:600360Date: (C)2011-05-13   (M)2022-10-10
Class: PATCHFamily: unix




It was discovered that the Simple Linux Utility for Resource Management , a cluster job management and scheduling system, did not drop the supplemental groups. These groups may be system groups with elevated privileges, which may allow a valid SLURM user to gain elevated privileges. The old stable distribution does not contain a slurm-llnl package. For the stable distribution , this problem has been fixed in version 1.3.6-1lenny3. For the unstable distribution , this problem has been fixed in version 1.3.15-1. We recommend that you upgrade your slurm-llnl package.

Platform:
Debian 5.0
Product:
slurm-llnl
Reference:
DSA-1776-1
CVE-2009-2084
CVE    1
CVE-2009-2084
CPE    1
cpe:/o:debian:debian_linux:5.x

© SecPod Technologies