8.8
CVSSv3

CVE-2022-29501

Published: 05/05/2022 Updated: 07/11/2023
CVSS v2 Base Score: 9 | Impact Score: 10 | Exploitability Score: 8
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 801
Vector: AV:N/AC:L/Au:S/C:C/I:C/A:C

Vulnerability Summary

SchedMD Slurm 21.08.x up to and including 20.11.x has Incorrect Access Control that leads to Escalation of Privileges and code execution.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

schedmd slurm

fedoraproject fedora 34

fedoraproject fedora 35

fedoraproject fedora 36

debian debian linux 11.0

Vendor Advisories

Debian Bug report logs - #1010633 slurm-wlm: CVE-2022-29501 Package: src:slurm-wlm; Maintainer for src:slurm-wlm is Debian HPC Team <debian-hpc@listsdebianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Thu, 5 May 2022 19:00:02 UTC Severity: grave Tags: security, upstream Found in versions slurm ...
Two security issues were discovered in the Simple Linux Utility for Resource Management (SLURM), a cluster resource management and job scheduling system, which could result in privilege escalation For the stable distribution (bullseye), these problems have been fixed in version 20117+really20114-2+deb11u1 We recommend that you upgrade your sl ...