It was discovered that Slurm did not correctly handle certain file system
operations. An attacker could possibly use this issue to modify files or
leak sensitive information. This issue only affected Ubuntu 22.04 LTS.
(CVE-2023-41914)
Ryan Hall discovered that Slurm did not correctly enforce certain message
integrity checks. An attacker could possibly use this issue to bypass
integrity checks. This issue only affected Ubuntu 22.04 LTS.
(CVE-2023-49933)
Ryan Hall discovered that Slurm did not correctly handle certain memory
operations. An attacker could possibly use this issue to cause a denial of
service or execute arbitrary code. This issue only affected Ubuntu 22.04
LTS. (CVE-2023-49937)
Ryan Hall discovered that Slurm did not correctly handle certain access
control mechanisms. An attacker could possibly use this issue to modify
files or leak sensitive information. This issue only affected Ubuntu 22.04
LTS. (CVE-2023-49938)
It was discovered that Slurm did not correctly handle user promotion. An
attacker could possibly use this issue to promote themselves to an
administrator. (CVE-2025-43904)
Intelligence View
⚡ tsecurity.de Intelligence
USN-8236-1: Slurm vulnerabilities
It was discovered that Slurm did not correctly handle certain file system operations. An attacker could possibly use this issue to modify files or leak…
Cyber Threat Intelligence & Forensik
ATT&CK-Navigator · IoC-Radar · Exploit-Belege
Compliance, SLA & Vendor Adherence
Advisory-Prüfung · Score-Einordnung · Fristen
CISA-SSVC-Triage (vulnrichment)CVE-2023-41914
Exploitation: none (Keine bekannte Ausnutzung)Automatable: no (Nicht automatisierbar)Technical Impact: total (Vollständig)
Quelle: CISA-ADP vulnrichment · Stand 2024-09-05T14:42:47.142210Z · CISA Coordinator
Advisory Radar
In herstellerseitiger Prüfung
Hersteller-Sicherheitsmeldungen & Patch-Status
Handlungsempfehlung für Administratoren
Hersteller-Advisory noch nicht formal hinterlegt. Regelmäßiges Re-Scanning der CTI-Quellen anberaumt.
Referenzen aus der Primärquelle („Verifiziert" nur bei Hersteller-Domäne):
-
Web Referenceschedmd.com
-
Web Referencelists.schedmd.com
-
Web Referencelists.fedoraproject.org