CVE-2018-20871: Critical severity sun grid engine vulnerability
In Univa Grid Engine before 8.6.3, when configured for Docker jobs and execd spooling on rootsquash, weak file permissions ("other" write access) occur in certain cases (GE-6890).
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-20871?
CVE-2018-20871 is classified as a medium severity vulnerability due to weak file permissions leading to potential unauthorized write access.
How do I fix CVE-2018-20871?
To fix CVE-2018-20871, upgrade Univa Grid Engine to version 8.6.6 or later to ensure proper file permission configurations.
What systems are affected by CVE-2018-20871?
CVE-2018-20871 affects Univa Grid Engine versions prior to 8.6.3 that are configured for Docker jobs with execd spooling on root_squash.
What risks are associated with CVE-2018-20871?
The risks associated with CVE-2018-20871 include the possibility of unauthorized users gaining write access to sensitive files.
Is CVE-2018-20871 a common vulnerability?
CVE-2018-20871 is not commonly reported but poses serious risks for systems using vulnerable versions of Univa Grid Engine.