Insecure SPANK environment variable handling exists in SchedMD Slurm before 16.05.11, 17.x before 17.02.9, and 17.11.x before 17.11.0rc2, allowing privilege escalation to root during Prolog or Epilog execution.
Metrics
Affected Vendors & Products
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.

Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T19:57:26.994Z
Reserved: 2017-10-17T00:00:00
Link: CVE-2017-15566

No data.

Status : Deferred
Published: 2017-11-01T17:29:00.307
Modified: 2025-04-20T01:37:25.860
Link: CVE-2017-15566

No data.

No data.