gpp_maybe Security update for slurm
SUSE-SLE-Module-Packagehub-Subpackages-15-SP5-2024-314


This update for slurm fixes the following issues: Security fixes: - CVE-2023-41914: Prevent filesystem race conditions that could let an attacker take control of an arbitrary file, or remove entire directories' contents. (bsc#1216207) - CVE-2023-49933: Prevent message extension attacks that could bypass the message hash. (bsc#1218046) - CVE-2023-49936: Prevent NULL pointer dereference on `size_valp` overflow. (bsc#1218050) - CVE-2023-49937: Prevent double-xfree() on error in `_unpack_node_reg_resp()`. (bsc#1218051) - CVE-2023-49938: Prevent modified `sbcast` RPCs from opening a file with the wrong group permissions. (bsc#1218053) Other fixes: - Add missing service file for slurmrestd (bsc#1217711). - Fix slurm upgrading to incompatible versions (bsc#1216869).


cloud_download Downloads

SUSE Package Hub 15.5 ppc64le
  • Packages
    libslurm36
    Libraries for SLURM
    20.11.9-150400.3.3.1 lock rpm
    slurm
    Simple Linux Utility for Resource Management
    20.11.9-150400.3.3.1 lock src