Information on source package slurm-wlm

Available versions

ReleaseVersion
bookworm22.05.8-4+deb12u3
trixie24.11.5-4
forky26.05.3-1
sid26.05.3-1

Open issues

BugbookwormtrixieforkysidDescription
CVE-2026-65165vulnerablevulnerablevulnerablevulnerableFix various issues around job steps and node count discrepancies
CVE-2026-65140vulnerablevulnerablevulnerablevulnerableFix a privilege escalation where an operator could alter Administrator accounts through the accounting database
CVE-2026-65139vulnerablevulnerablevulnerablevulnerableFix various issues in unsafe operation/queries to the slurmdbd
CVE-2026-65138vulnerablevulnerablevulnerablevulnerableFix heap over-read when unpacking a malformed forward data RPC in slurmd. Fix a slurmd crash when handling a malformed forward data RPC with a missing socket address
CVE-2026-65109vulnerablevulnerablevulnerablevulnerableFix slurmstepd removing files outside the container spool directory when cleaning up an OCI containe, Fix slurmstepd leaving OCI container spool directories behind when ContainerPath contains a task id pattern
CVE-2026-65108vulnerablevulnerablevulnerablevulnerableFix a slurmstepd stack overflow when a job environment contains an oversized SPANK option variable
CVE-2026-65107vulnerablevulnerablevulnerablevulnerableFix sbcast shared objects skipping credential verification, Fix possible slurmd crash on invalid sbcast filenames

Resolved issues

BugDescription
CVE-2025-43904In SchedMD Slurm before 24.11.5, 24.05.8, and 23.11.11, the accounting ...
CVE-2024-48936SchedMD Slurm before 24.05.4 has Incorrect Authorization. A mistake in ...
CVE-2023-49938An issue was discovered in SchedMD Slurm 22.05.x and 23.02.x. There is ...
CVE-2023-49937An issue was discovered in SchedMD Slurm 22.05.x, 23.02.x, and 23.11.x ...
CVE-2023-49936An issue was discovered in SchedMD Slurm 22.05.x, 23.02.x, and 23.11.x ...
CVE-2023-49935An issue was discovered in SchedMD Slurm 23.02.x and 23.11.x. There is ...
CVE-2023-49934An issue was discovered in SchedMD Slurm 23.11.x. There is SQL Injecti ...
CVE-2023-49933An issue was discovered in SchedMD Slurm 22.05.x, 23.02.x, and 23.11.x ...
CVE-2023-41914SchedMD Slurm 23.02.x before 23.02.6 and 22.05.x before 22.05.10 allow ...
CVE-2022-31251A Incorrect Default Permissions vulnerability in the packaging of the ...
CVE-2022-29502SchedMD Slurm 21.08.x through 20.11.x has Incorrect Access Control tha ...
CVE-2022-29501SchedMD Slurm 21.08.x through 20.11.x has Incorrect Access Control tha ...
CVE-2022-29500SchedMD Slurm 21.08.x through 20.11.x has Incorrect Access Control tha ...
CVE-2021-43337SchedMD Slurm 21.08.* before 21.08.4 has Incorrect Access Control. On ...
CVE-2021-31215SchedMD Slurm before 20.02.7 and 20.03.x through 20.11.x before 20.11. ...
CVE-2020-27746Slurm before 19.05.8 and 20.x before 20.02.6 exposes Sensitive Informa ...
CVE-2020-27745Slurm before 19.05.8 and 20.x before 20.02.6 has an RPC Buffer Overflo ...
CVE-2020-12693Slurm 19.05.x before 19.05.7 and 20.02.x before 20.02.3, in the rare c ...

Security announcements

DSA / DLADescription
DSA-5961-1slurm-wlm - security update
DSA-5609-1slurm-wlm - security update
DSA-5529-1slurm-wlm - security update
DSA-5166-1slurm-wlm - security update

Search for package or bug name: Reporting problems