9.8
CVSSv3

CVE-2020-27745

Published: 27/11/2020 Updated: 29/03/2022
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Slurm prior to 19.05.8 and 20.x prior to 20.02.6 has an RPC Buffer Overflow in the PMIx MPI plugin.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

schedmd slurm

debian debian linux 9.0

debian debian linux 10.0

Vendor Advisories

Debian Bug report logs - #974721 slurm-llnl: CVE-2020-27745: PMIx - fix potential buffer overflows from use of unpackmem() Package: src:slurm-llnl; Maintainer for src:slurm-llnl is Debian HPC Team <debian-hpc@listsdebianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Sat, 14 Nov 2020 09:45:02 UTC ...
Multiple security issues were discovered in the Simple Linux Utility for Resource Management (SLURM), a cluster resource management and job scheduling system, which could result in denial of service, information disclosure or privilege escalation For the stable distribution (buster), these problems have been fixed in version 180852-1+deb10u2 W ...