SchedMD Slurm before 20.02.7 and 20.03.x through 20.11.x before 20.11.7 allows remote code execution as SlurmUser because use of a PrologSlurmctld or EpilogSlurmctld script leads to environment mishandling.
| Name | Vendor | Start Version | End Version | 
|---|---|---|---|
| Slurm | Schedmd | * | 20.02.7 (excluding) | 
| Slurm | Schedmd | 20.11 (including) | 20.11.7 (excluding) | 
| Slurm-llnl | Ubuntu | bionic | * | 
| Slurm-llnl | Ubuntu | esm-apps/bionic | * | 
| Slurm-llnl | Ubuntu | esm-apps/focal | * | 
| Slurm-llnl | Ubuntu | esm-apps/xenial | * | 
| Slurm-llnl | Ubuntu | esm-infra-legacy/trusty | * | 
| Slurm-llnl | Ubuntu | focal | * | 
| Slurm-llnl | Ubuntu | groovy | * | 
| Slurm-llnl | Ubuntu | trusty | * | 
| Slurm-llnl | Ubuntu | trusty/esm | * | 
| Slurm-llnl | Ubuntu | xenial | * | 
| Slurm-wlm | Ubuntu | hirsute | * | 
| Slurm-wlm | Ubuntu | impish | * | 
| Slurm-wlm | Ubuntu | trusty | * | 
| Slurm-wlm | Ubuntu | xenial | * |