CVE-2023-49938 โ Slurm vulnerability
5 documents5 sources
Severity
8.2HIGHNVD
EPSS
0.3%
top 44.85%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 14
Description
An issue was discovered in SchedMD Slurm 22.05.x and 23.02.x. There is Incorrect Access Control: an attacker can modified their extended group list that is used with the sbcast subsystem, and open files with an unauthorized set of extended groups. The fixed versions are 22.05.11 and 23.02.7.
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:NExploitability: 3.9 | Impact: 4.2
Affected Packages1 packages
๐ดVulnerability Details
3๐Vendor Advisories
1Debianโถ
CVE-2023-49938: slurm-wlm - An issue was discovered in SchedMD Slurm 22.05.x and 23.02.x. There is Incorrect...โ2023