Back to Database
Status published
Medium
CVE-2018-10995
SchedMD Slurm before 17.02.11 and 17.1x.x before 17.11.7 mishandles user...
Vulnerability Description
SchedMD Slurm before 17.02.11 and 17.1x.x before 17.11.7 mishandles user names (aka user_name fields) and group ids (aka gid fields).
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2018-10995
Credits & Attribution
No credits recorded in the NVD database.
References
More from schedmd
View All →CVE-2022-29502
SchedMD Slurm 21.08.x through 20.11.x has Incorrect Access Control that...
Critical
9.8
CVE-2022-29501
SchedMD Slurm 21.08.x through 20.11.x has Incorrect Access Control that...
High
8.8
CVE-2022-29500
SchedMD Slurm 21.08.x through 20.11.x has Incorrect Access Control that...
High
8.8
CVE-2021-43337
SchedMD Slurm 21.08.* before 21.08.4 has Incorrect Access Control. On...
Medium
6.5
CVE-2021-31215
SchedMD Slurm before 20.02.7 and 20.03.x through 20.11.x before 20.11.7...
High
8.8
Affected Vendor
schedmd
View all reports →Affected Software
slurm, debian linux
Vulnerable Versions:
0, 17.11.0.0, 17.11.0.1, 17.11.1.1, 17.11.1.2, 17.11.2.1, 17.11.3.1, 17.11.3.2, 17.11.4.1, 17.11.5.1, 17.11.6.1, 8.0, 9.0
Timeline
Official Publish:
May 30th, 2018
Last Modified:
August 5th, 2024
Added to House:
July 20th, 2026
CVSS Vectors
V3:
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.