UBUNTU-CVE-2018-10995
Dashboard / Vulnerabilities / UBUNTU-CVE-2018-10995
UBUNTU-CVE-2018-10995
Summary:
Details: SchedMD Slurm before 17.02.11 and 17.1x.x before 17.11.7 mishandles user names (aka user_name fields) and group ids (aka gid fields).
References: https://ubuntu.com/security/CVE-2018-10995, https://www.schedmd.com/news.php?id=203, https://lists.schedmd.com/pipermail/slurm-announce/2018/000008.html, https://github.com/SchedMD/slurm/commit/033dc0d1d28b8d2ba1a5187f564a01c15187eb4e, https://github.com/SchedMD/slurm/commit/df545955e4f119974c278bff0c47155257d5afc7, https://ubuntu.com/security/notices/USN-4781-1, https://ubuntu.com/security/notices/USN-4781-2, https://www.cve.org/CVERecord?id=CVE-2018-10995
Affected packages
Package
Name: slurm-llnl
Purl: pkg:deb/ubuntu/[email protected]~esm4?arch=source&distro=trusty/esm
Affected ranges
Type: ECOSYSTEM
Events:
