SchedMD Slurm before 20.02.7 and 20.03.x through 20.11.x before 20.11.7 allows remote code execution as SlurmUser because use of a PrologSlurmctld or EpilogSlurmctld script leads to environment mishandling.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Slurm | Schedmd | * | 20.02.7 (excluding) |
Slurm | Schedmd | 20.11 (including) | 20.11.7 (excluding) |
Slurm-llnl | Ubuntu | bionic | * |
Slurm-llnl | Ubuntu | esm-apps/bionic | * |
Slurm-llnl | Ubuntu | esm-apps/focal | * |
Slurm-llnl | Ubuntu | esm-apps/xenial | * |
Slurm-llnl | Ubuntu | focal | * |
Slurm-llnl | Ubuntu | groovy | * |
Slurm-llnl | Ubuntu | trusty | * |
Slurm-llnl | Ubuntu | trusty/esm | * |
Slurm-llnl | Ubuntu | xenial | * |
Slurm-wlm | Ubuntu | hirsute | * |
Slurm-wlm | Ubuntu | impish | * |
Slurm-wlm | Ubuntu | trusty | * |
Slurm-wlm | Ubuntu | xenial | * |