Pop-Up Thingie

>>> Magnum BBS <<<
  • Home
  • Forum
  • Files
  • Log in

  1. Forum
  2. Usenet
  3. LINUX.DEBIAN.ANNOUNCE.SEC
  • [SECURITY] [DSA 1776-1] New slurm-llnl packages fix privilege escalatio

    From Thijs Kinkhorst@1:229/2 to All on Tue Apr 21 12:40:10 2009
    From: [email protected]

    -----BEGIN PGP SIGNED MESSAGE-----
    Hash: SHA1

    - ------------------------------------------------------------------------ Debian Security Advisory DSA-1776-1 [email protected] http://www.debian.org/security/ Thijs Kinkhorst
    April 21, 2009 http://www.debian.org/security/faq
    - ------------------------------------------------------------------------

    Package : slurm-llnl
    Vulnerability : programming error
    Problem type : local
    Debian-specific: no
    Debian Bug : 524980

    It was discovered that the Simple Linux Utility for Resource Management (SLURM), a cluster job management and scheduling system, did not drop
    the supplemental groups. These groups may be system groups with elevated privileges, which may allow a valid SLURM user to gain elevated privileges.

    The old stable distribution (etch) does not contain a slurm-llnl package.

    For the stable distribution (lenny), this problem has been fixed in
    version 1.3.6-1lenny3.

    For the unstable distribution (sid), this problem has been fixed in
    version 1.3.15-1.

    We recommend that you upgrade your slurm-llnl package.

    Upgrade instructions
    - --------------------

    wget url
    will fetch the file for you
    dpkg -i file.deb
    will install the referenced file.

    If you are using the apt-get package manager, use the line for
    sources.list as given below:

    apt-get update
    will update the internal database
    apt-get upgrade
    will install corrected packages

    You may use an automated update by adding the resources from the
    footer to the proper configuration.


    Debian GNU/Linux 5.0 alias lenny
    - --------------------------------

    Source archives:

    http://security.debian.org/pool/updates/main/s/slurm-llnl/slurm-llnl_1.3.6-1lenny3.diff.gz
    Size/MD5 checksum: 64996 5fddc1d94476619e4b7c7f22c8678d26
    http://security.debian.org/pool/updates/main/s/slurm-llnl/slurm-llnl_1.3.6.orig.tar.gz
    Size/MD5 checksum: 6594797 1d0585a558b91158c65db7298dd22426
    http://security.debian.org/pool/updates/main/s/slurm-llnl/slurm-llnl_1.3.6-1lenny3.dsc
    Size/MD5 checksum: 1710 05867d451d0e8c89e5ffa8efec2cc89d

    Architecture independent packages:

    http://security.debian.org/pool/updates/main/s/slurm-llnl/slurm-llnl-doc_1.3.6-1lenny3_all.deb
    Size/MD5 checksum: 850710 389aec73a46468dcd7ebeb4c4d51eb1c

    alpha architecture (DEC Alpha)

    http://security.debian.org/pool/updates/main/s/slurm-llnl/libpmi0-dev_1.3.6-1lenny3_alpha.deb
    Size/MD5 checksum: 26888 a5ea7fee6d0e75618c30c0ec37c157c3
    http://security.debian.org/pool/updates/main/s/slurm-llnl/slurm-llnl_1.3.6-1lenny3_alpha.deb
    Size/MD5 checksum: 5400312 3942fce2dbcf3bf5153aa1ab43228047
    http://security.debian.org/pool/updates/main/s/slurm-llnl/slurm-llnl-slurmdbd_1.3.6-1lenny3_alpha.deb
    Size/MD5 checksum: 650910 a3f33b7e50d5ad842de8019ab35af8aa
    http://security.debian.org/pool/updates/main/s/slurm-llnl/libpmi0_1.3.6-1lenny3_alpha.deb
    Size/MD5 checksum: 18858 a8c8d7ba0584461b33a66dd639a332f5
    http://security.debian.org/pool/updates/main/s/slurm-llnl/slurm-llnl-sview_1.3.6-1lenny3_alpha.deb
    Size/MD5 checksum: 370244 ab2579137734f33d7297922af11bdb77
    http://security.debian.org/pool/updates/main/s/slurm-llnl/libslurm13_1.3.6-1lenny3_alpha.deb
    Size/MD5 checksum: 283126 4059af374860d4ee883ea7d46c125fcd
    http://security.debian.org/pool/updates/main/s/slurm-llnl/slurm-llnl-basic-plugins-dev_1.3.6-1lenny3_alpha.deb
    Size/MD5 checksum: 1542610 d106a5728a67549df7c8f399c1d1ab73
    http://security.debian.org/pool/updates/main/s/slurm-llnl/libslurm13-dev_1.3.6-1lenny3_alpha.deb
    Size/MD5 checksum: 600980 c658d851294fe58172e2753d5ce44646
    http://security.debian.org/pool/updates/main/s/slurm-llnl/slurm-llnl-basic-plugins_1.3.6-1lenny3_alpha.deb
    Size/MD5 checksum: 411156 55d1819dddc4a3321b182d292d4c5944

    amd64 architecture (AMD x86_64 (AMD64))

    http://security.debian.org/pool/updates/main/s/slurm-llnl/libslurm13-dev_1.3.6-1lenny3_amd64.deb
    Size/MD5 checksum: 437968 6433601f151b27788e5d93d9a945acc8
    http://security.debian.org/pool/updates/main/s/slurm-llnl/slurm-llnl-slurmdbd_1.3.6-1lenny3_amd64.deb
    Size/MD5 checksum: 636364 791835add6fed2b7fd7082d4a376d50c
    http://security.debian.org/pool/updates/main/s/slurm-llnl/libpmi0-dev_1.3.6-1lenny3_amd64.deb
    Size/MD5 checksum: 24000 1780ea8351a4fb55522931236cb4b733
    http://security.debian.org/pool/updates/main/s/slurm-llnl/libpmi0_1.3.6-1lenny3_amd64.deb
    Size/MD5 checksum: 18926 46190ef53eddc7ad02ef95e5adcd918f
    http://security.debian.org/pool/updates/main/s/slurm-llnl/slurm-llnl-basic-plugins-dev_1.3.6-1lenny3_amd64.deb
    Size/MD5 checksum: 1361004 f5dd511c93356cd665c26eafab8e3cdd
    http://security.debian.org/pool/updates/main/s/slurm-llnl/slurm-llnl-basic-plugins_1.3.6-1lenny3_amd64.deb
    Size/MD5 checksum: 389882 38dbf3d3b10c4708f705be259e265310
    http://security.debian.org/pool/updates/main/s/slurm-llnl/slurm-llnl-sview_1.3.6-1lenny3_amd64.deb
    Size/MD5 checksum: 356012 0dd4245240922389980a6b7c0d4c0471
    http://security.debian.org/pool/updates/main/s/slurm-llnl/libslurm13_1.3.6-1lenny3_amd64.deb
    Size/MD5 checksum: 274242 8d683dc61752589b2b8a29940a4cd019
    http://security.debian.org/pool/updates/main/s/slurm-llnl/slurm-llnl_1.3.6-1lenny3_amd64.deb
    Size/MD5 checksum: 5265574 526c7c8fd7c7589288795d7ea2ab7858

    arm architecture (ARM)

    http://security.debian.org/pool/updates/main/s/slurm-llnl/slurm-llnl_1.3.6-1lenny3_arm.deb
    Size/MD5 checksum: 4598486 b05a52d7d6d5afa50fc8d9ffc3fcadd8
    http://security.debian.org/pool/updates/main/s/slurm-llnl/slurm-llnl-basic-plugins_1.3.6-1lenny3_arm.deb
    Size/MD5 checksum: 357272 f6be18a8f4e6b41c092bdc8d8d13ee47
    http://security.debian.org/pool/updates/main/s/slurm-llnl/slurm-llnl-sview_1.3.6-1lenny3_arm.deb
    Size/MD5 checksum: 312386 4d6ef701d97bc6d8f64e1f1b457bffa5
    http://security.debian.org/pool/updates/main/s/slurm-llnl/libslurm13_1.3.6-1lenny3_arm.deb
    Size/MD5 checksum: 239474 0f0e0b7e70ec17cfd92532361252dc1b
    http://security.debian.org/pool/updates/main/s/slurm-llnl/libslurm13-dev_1.3.6-1lenny3_arm.deb
    Size/MD5 checksum: 404058 548bd5879d9431b539ec1af4073af4ec
    http://security.debian.org/pool/updates/main/s/slurm-llnl/libpmi0_1.3.6-1lenny3_arm.deb
    Size/MD5 checksum: 17984 279c485c5fc964cb47af035af10f6025
    http://security.debian.org/pool/updates/main/s/slurm-llnl/libpmi0-dev_1.3.6-1lenny3_arm.deb
    Size/MD5 checksum: 23380 81907b385bd880f607708135475316b4

    [continued in next message]

    --- SoupGate-Win32 v1.05
    * Origin: you cannot sedate... all the things you hate (1:229/2)
  • Who's Online

  • Recent Visitors

    • Bob Worm
      Mon Jun 8 14:11:46 2026
      from Wales, Uk via Telnet
    • Krenn
      Mon Jun 8 11:22:02 2026
      from Sydney, Nsw via Telnet
    • Bob Worm
      Mon Jun 8 08:26:26 2026
      from Wales, Uk via Telnet
    • Spearb0y
      Mon Jun 8 06:51:02 2026
      from Massachusetts via SSH
    • Krenn
      Mon Jun 8 05:45:38 2026
      from Sydney, Nsw via Telnet
    • Bob Worm
      Sun Jun 7 20:58:28 2026
      from Wales, Uk via Telnet
    • Michal Wronka
      Sun Jun 7 19:26:28 2026
      from Wroclaw, Poland via SSH
    • Centurion
      Sun Jun 7 16:59:51 2026
      from Berea, Ohio via Telnet
  • System Info

    Sysop: Keyop
    Location: Huddersfield, West Yorkshire, UK
    Users: 715
    Nodes: 16 (2 / 14)
    Uptime: 24:01:52
    Calls: 12,105
    Calls today: 5
    Files: 15,006
    Messages: 6,518,155

© >>> Magnum BBS <<<, 2026