CVE-2017-15566
—CVSS 3.0
7.8 high
EPSS
<1%p46
Published
()
Modified
Description
Insecure SPANK environment variable handling exists in SchedMD Slurm before 16.05.11, 17.x before 17.02.9, and 17.11.x before 17.11.0rc2, allowing privilege escalation to root during Prolog or Epilog execution.
- Vendors
- schedmd
- Products
- slurm
- Weakness
- CWE-426
- Vector
- CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.