SUSE-SU-2018:1925-1

See a problem?
Import Source
https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2018:1925-1.json
JSON Data
https://api.osv.dev/v1/vulns/SUSE-SU-2018:1925-1
Related
Published
2018-07-11T14:42:41Z
Modified
2018-07-11T14:42:41Z
Summary
Security update for slurm
Details

This update for slurm to version 17.11.7 fixes the following issues:

This security issue was fixed:

  • CVE-2018-10995: Ensure correct handling of user names and group ids (bsc#1095508).

These non-security issues were fixed:

  • CRAY - Add slurmsmwd to the contribs/cray dir
  • PMIX - Added the direct connect authentication.
  • Prevent the backup slurmctld from losing the active/available node features list on takeover.
  • Be able to force powerdown of cloud node even if in powersave state.
  • Allow cloud nodes to be recognized in Slurm when booted out of band.
  • Notify srun and ctld when unkillable stepd exits.
  • Fixes daemoniziation in newly introduced slurmsmwd daemon.
References

Affected packages

SUSE:Linux Enterprise Module for HPC 15 / slurm

Package

Name
slurm
Purl
purl:rpm/suse/slurm&distro=SUSE%20Linux%20Enterprise%20Module%20for%20HPC%2015

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
17.11.7-6.3.1

Ecosystem specific

{
    "binaries": [
        {
            "slurm-config": "17.11.7-6.3.1",
            "slurm-plugins": "17.11.7-6.3.1",
            "slurm-auth-none": "17.11.7-6.3.1",
            "slurm-slurmdbd": "17.11.7-6.3.1",
            "slurm-devel": "17.11.7-6.3.1",
            "slurm-pam_slurm": "17.11.7-6.3.1",
            "slurm-doc": "17.11.7-6.3.1",
            "slurm-munge": "17.11.7-6.3.1",
            "perl-slurm": "17.11.7-6.3.1",
            "slurm-sql": "17.11.7-6.3.1",
            "libslurm32": "17.11.7-6.3.1",
            "libpmi0": "17.11.7-6.3.1",
            "slurm-lua": "17.11.7-6.3.1",
            "slurm": "17.11.7-6.3.1",
            "slurm-node": "17.11.7-6.3.1",
            "slurm-torque": "17.11.7-6.3.1"
        }
    ]
}