Vulnerability index

Browse CVEs

11 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Slurm MEDIUM 5.0
CVE-2024-48936

SchedMD Slurm before 24.05.4 has Incorrect Authorization. A mistake in authentication handling in stepmgr could permit an attacker to execute process…

Fix: 24.05.4+
Fix from $1,600 2024-10-28
Slurm CRITICAL 9.8
CVE-2023-49937

An issue was discovered in SchedMD Slurm 22.05.x, 23.02.x, and 23.11.x. Because of a double free, attackers can cause a denial of service or possibly…

Fix: 22.05.12 / 23.02.7+
Fix from $2,300 2023-12-14
Slurm HIGH 8.2
CVE-2023-49938

An issue was discovered in SchedMD Slurm 22.05.x and 23.02.x. There is Incorrect Access Control: an attacker can modified their extended group list t…

Fix: 22.05.11 / 23.02.7+
Fix from $1,950 2023-12-14
Slurm CRITICAL 9.8
CVE-2023-49934

An issue was discovered in SchedMD Slurm 23.11.x. There is SQL Injection against the SlurmDBD database. The fixed version is 23.11.1.

Mitigation only
Fix from $2,300 2023-12-14
Slurm HIGH 8.8
CVE-2023-49935

An issue was discovered in SchedMD Slurm 23.02.x and 23.11.x. There is Incorrect Access Control because of a slurmd Message Integrity Bypass. An atta…

Fix: 23.02.7+
Fix from $1,950 2023-12-14
Slurm HIGH 7.5
CVE-2023-49936

An issue was discovered in SchedMD Slurm 22.05.x, 23.02.x, and 23.11.x. A NULL pointer dereference leads to denial of service. The fixed versions are…

Fix: 22.05.12 / 23.02.7+
Fix from $1,950 2023-12-14
Slurm HIGH 7.5
CVE-2023-49933

An issue was discovered in SchedMD Slurm 22.05.x, 23.02.x, and 23.11.x. There is Improper Enforcement of Message Integrity During Transmission in a C…

Fix: 22.05.12 / 23.02.7+
Fix from $1,950 2023-12-14
Slurm MEDIUM 5.5
CVE-2019-19727

SchedMD Slurm before 18.08.9 and 19.x before 19.05.5 has weak slurmdbd.conf permissions.

Fix: 18.08.9 / 19.05.5+
Fix from $1,600 2020-01-13
Slurm CRITICAL 9.8
CVE-2019-6438

SchedMD Slurm before 17.11.13 and 18.x before 18.08.5 mishandles 32-bit systems.

Fix: 17.11.13 / 18.08.5+
Fix from $2,300 2019-01-31
Slurm HIGH 7.8
CVE-2017-15566

Insecure SPANK environment variable handling exists in SchedMD Slurm before 16.05.11, 17.x before 17.02.9, and 17.11.x before 17.11.0rc2, allowing pr…

Fix: 16.05.11 / 17.2.09+
Fix from $1,950 2017-11-01
Slurm HIGH 8.1
CVE-2016-10030

The _prolog_error function in slurmd/req.c in Slurm before 15.08.13, 16.x before 16.05.7, and 17.x before 17.02.0-pre4 has a vulnerability in how the…

Fix: after 15.08.12
Fix from $1,950 2017-01-05