Updated slurm packages fix a security vulnerability
Publication date: 13 Jun 2021Modification date: 13 Jun 2021
Type: security
Affected Mageia releases : 8
CVE: CVE-2021-31215
Description
SchedMD Slurm before 20.02.7 and 20.03.x through 20.11.x before 20.11.7 allows remote code execution as SlurmUser because use of a PrologSlurmctld or EpilogSlurmctld script leads to environment mishandling (CVE-2021-31215).
References
SRPMS
8/core
- slurm-20.11.7-1.mga8