CVE-2023-49934: SQL Injection
Published Dec 14, 2023
·Updated
An issue was discovered in SchedMD Slurm 23.11.x. There is SQL Injection against the SlurmDBD database. The fixed version is 23.11.1.
Affected Software
2 affected components
SchedMD Slurm=23.11
SchedMD Slurm=23.11-rc1
Event History
Dec 14, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·05:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-49934?
CVE-2023-49934 has a critical severity due to SQL Injection vulnerabilities that can compromise the SlurmDBD database.
2
How do I fix CVE-2023-49934?
To fix CVE-2023-49934, upgrade to SchedMD Slurm version 23.11.1 or later.
3
What versions of Slurm are affected by CVE-2023-49934?
CVE-2023-49934 affects SchedMD Slurm versions 23.11 and 23.11-rc1.
4
What kind of vulnerability is CVE-2023-49934?
CVE-2023-49934 is an SQL Injection vulnerability affecting the SlurmDBD database.
5
Is there a workaround for CVE-2023-49934?
There is no official workaround for CVE-2023-49934; upgrading to the patched version is recommended.