Oval Definition:oval:org.opensuse.security:def:70623
Revision Date:2020-12-01Version:1
Title:Security update for slurm (Moderate)
Description:

This update for slurm fixes the following issues:

- Fix Authentication Bypass when Message Aggregation is enabled CVE-2020-12693 This fixes and issue where authentication could be bypassed via an alternate path or channel when message Aggregation was enabled. A race condition allowed a user to launch a process as an arbitrary user. Add: Fix-Authentication-Bypass-when-Message-Aggregation-is-enabled-CVE-2020-12693.patch (CVE-2020-12693, bsc#1172004). - Remove unneeded build dependency to postgresql-devel.
Family:unixClass:patch
Status:Reference(s):1172004
1174247
CVE-2020-12693
CVE-2020-14331
SUSE-SU-2020:2537-1
Platform(s):SUSE Linux Enterprise Module for Live Patching 15 SP2
SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP2
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Module for Live Patching 15 SP2 is installed
  • AND Package Information
  • kernel-livepatch-5_3_18-24_9-default-2-2 is installed
  • OR kernel-livepatch-SLE15-SP2_Update_1-2-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP2 is installed
  • AND Package Information
  • libslurm33-18.08.9-3.13 is installed
  • OR slurm-18.08.9-3.13 is installed
  • BACK