ZeroHour

CVE-2017-15566

CVSS 3.0
7.8 high
EPSS
<1%p46
Published
()
Modified
Description

Insecure SPANK environment variable handling exists in SchedMD Slurm before 16.05.11, 17.x before 17.02.9, and 17.11.x before 17.11.0rc2, allowing privilege escalation to root during Prolog or Epilog execution.

Vendors
schedmd
Products
slurm
Weakness
CWE-426
Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.