CVE-2022-29501Slurm vulnerability

7 documents6 sources
Severity
8.8HIGHNVD
EPSS
1.9%
top 16.57%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMay 5
Latest updateOct 30

Description

SchedMD Slurm 21.08.x through 20.11.x has Incorrect Access Control that leads to Escalation of Privileges and code execution.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 2.8 | Impact: 5.9

Affected Packages1 packages

NVDschedmd/slurm21.08.021.08.08+1

Also affects: Debian Linux 11.0, Fedora 34, 35, 36

Patches

🔴Vulnerability Details

4
OSV
slurm-llnl, slurm-wlm vulnerabilities2023-10-30
GHSA
GHSA-hqrm-v6gj-7wmf: SchedMD Slurm 212022-05-06
OSV
CVE-2022-29501: SchedMD Slurm 212022-05-05
CVEList
CVE-2022-29501: SchedMD Slurm 212022-05-05

📋Vendor Advisories

2
Ubuntu
Slurm vulnerabilities2023-10-30
Debian
CVE-2022-29501: slurm-wlm - SchedMD Slurm 21.08.x through 20.11.x has Incorrect Access Control that leads to...2022
CVE-2022-29501 — Schedmd Slurm vulnerability | cvebase