CVE-2022-29500: Critical severity slurm workload manager vulnerability
SchedMD Slurm 21.08.x through 20.11.x has Incorrect Access Control that leads to Information Disclosure.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the vulnerability ID?
The vulnerability ID is CVE-2022-29500.
What is the severity of CVE-2022-29500?
The severity of CVE-2022-29500 is critical with a severity value of 8.8.
What is affected by CVE-2022-29500?
SchedMD Slurm versions 21.08.x through 20.11.x are affected by CVE-2022-29500.
How can I fix the vulnerability?
To fix the vulnerability, update to SchedMD Slurm version 20.11.9 for versions 20.11.x and update to SchedMD Slurm version 21.08.8 for versions 21.08.x.
Where can I find more information about CVE-2022-29500?
You can find more information about CVE-2022-29500 at the following references: [1](https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/HXLOI3ERTKMZR2KWNRN7OR5S55VPWENH/), [2](https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/Y6B7OWVNVCJUDE6VDWGCBUWMRCRETAO3/), [3](https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/YBI4NFDGGMBKWG4EMSZL5UHATDCLPCQW/)