Skip to content

Security vulnerability in a third party software, Slurm < 20.11.9 and 21.08.8

Critical
mauri-melato published GHSA-x775-rxcq-38x8 May 16, 2022

Package

Slurm (AWS ParallelCluster)

Affected versions

all versions < 20.11.9 and < 21.08.8

Patched versions

20.11.9, 21.08.8

Description

AWS ParallelCluster versions 3.1.4 and 2.11.7 were released in order to update the Slurm software to versions 21.08.8 and 20.11.9, respectively. This change was made in response to SchedMD’s release of these versions on 2022-05-04, to provide fixes related to the following CVEs: CVE-2022-29500, CVE-2022-29501, and CVE-2022-29502.

Severity

Critical

CVE ID

No known CVE

Weaknesses

No CWEs