SUSE: 2019:3080-1 moderate: slurm
Summary
This update for slurm fixes the following issues: Security issue fixed: - CVE-2019-6438: Fixed a heap overflow on 32-bit systems in xmalloc (bsc#1123304). - CVE-2019-12838: Fixed an SQL injection (bsc#1140709). Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Module for HPC 12: zypper in -t patch SUSE-SLE-Module-HPC-12-2019-3080=1 Package List: - SUSE Linux Enterprise Module for HPC 12 (aarch64 x86_64): libpmi0-17.02.11-6.33.1 libpmi0-debuginfo-17.02.11-6.33.1 libslurm31-17.02.11-6.33.1 libslurm31-debuginfo-17.02.11-6.33.1 perl-slurm-17.02.11-6.33.1 perl-slurm-debuginfo-17.02.11-6.33.1 slurm-17.02.11-6.33.1 slurm-auth-none-17.02.11-6.33.1 slurm-auth-none-debuginfo-17.02.11-6.33.1 slurm-confi...
Read the Full AdvisoryReferences
#1123304 #1140709
Cross- CVE-2019-12838 CVE-2019-6438
Affected Products:
SUSE Linux Enterprise Module for HPC 12
https://www.suse.com/security/cve/CVE-2019-12838.html
https://www.suse.com/security/cve/CVE-2019-6438.html
https://bugzilla.suse.com/1123304
https://bugzilla.suse.com/1140709