ZeroHour

CVE-2021-43337

CVSS 3.1
6.5 medium
EPSS
1%p66
Published
()
Modified
Description

SchedMD Slurm 21.08.* before 21.08.4 has Incorrect Access Control. On sites using the new AccountingStoreFlags=job_script and/or job_env options, the access control rules in SlurmDBD may permit users to request job scripts and environment files to which they should not have access.

Vendors
schedmdfedoraproject
Products
slurm, fedora
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.