CVE-2022-29502Slurm vulnerability

7 documents6 sources
Severity
9.8CRITICALNVD
OSV8.8
EPSS
0.9%
top 24.00%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMay 5
Latest updateOct 30

Description

SchedMD Slurm 21.08.x through 20.11.x has Incorrect Access Control that leads to Escalation of Privileges.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 3.9 | Impact: 5.9

Affected Packages1 packages

NVDschedmd/slurm21.08.021.08.08

Also affects: Fedora 34, 35, 36

Patches

🔴Vulnerability Details

4
OSV
slurm-llnl, slurm-wlm vulnerabilities2023-10-30
GHSA
GHSA-56x4-r7hf-449r: SchedMD Slurm 212022-05-06
CVEList
CVE-2022-29502: SchedMD Slurm 212022-05-05
OSV
CVE-2022-29502: SchedMD Slurm 212022-05-05

📋Vendor Advisories

2
Ubuntu
Slurm vulnerabilities2023-10-30
Debian
CVE-2022-29502: slurm-wlm - SchedMD Slurm 21.08.x through 20.11.x has Incorrect Access Control that leads to...2022
CVE-2022-29502 — Schedmd Slurm vulnerability | cvebase