SUSE-SU-2022:3477-1
Dashboard / Vulnerabilities / SUSE-SU-2022:3477-1
SUSE-SU-2022:3477-1
Summary: Security update for slurm_20_02
Details: This update for slurm_20_02 fixes the following issues: - CVE-2022-31251: Fixed a potential security vulnerability in the test package (bsc#1201674). - CVE-2022-29500: Fixed architectural flaw that could have been exploited to allow an unprivileged user to execute arbitrary processes as root (bsc#1199278). - CVE-2022-29501: Fixed a problem that an unprivileged user could have sent data to arbitrary unix socket as root (bsc#1199279). Bugfixes: - Fixed qstat error message (torque wrapper) (bsc#1186646).
References: https://www.suse.com/support/update/announcement/2022/suse-su-20223477-1/, https://bugzilla.suse.com/1186646, https://bugzilla.suse.com/1199278, https://bugzilla.suse.com/1199279, https://bugzilla.suse.com/1201674, https://www.suse.com/security/cve/CVE-2022-29500, https://www.suse.com/security/cve/CVE-2022-29501, https://www.suse.com/security/cve/CVE-2022-31251
Affected packages
Package
Name: slurm_20_02
Purl: pkg:rpm/suse/slurm_20_02&distro=SUSE%20Linux%20Enterprise%20Module%20for%20HPC%2012
Affected ranges
Type: ECOSYSTEM
Events:
