Medium severity5.3NVD Advisory· Published May 30, 2018· Updated Jun 17, 2026
CVE-2018-10995
CVE-2018-10995
Description
SchedMD Slurm before 17.02.11 and 17.1x.x before 17.11.7 mishandles user names (aka user_name fields) and group ids (aka gid fields).
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
31< 17.02.11 | 17.1x.x < 17.11.7+ 15 more
- (no CPE)range: < 17.02.11 | 17.1x.x < 17.11.7
- cpe:2.3:a:schedmd:slurm:*:*:*:*:*:*:*:*range: <=17.02.10.1
- cpe:2.3:a:schedmd:slurm:17.11.0.0:pre1:*:*:*:*:*:*
- cpe:2.3:a:schedmd:slurm:17.11.0.0:pre2:*:*:*:*:*:*
- cpe:2.3:a:schedmd:slurm:17.11.0.0:rc1:*:*:*:*:*:*
- cpe:2.3:a:schedmd:slurm:17.11.0.0:rc2:*:*:*:*:*:*
- cpe:2.3:a:schedmd:slurm:17.11.0.0:rc3:*:*:*:*:*:*
- cpe:2.3:a:schedmd:slurm:17.11.0.1:*:*:*:*:*:*:*
- cpe:2.3:a:schedmd:slurm:17.11.1.1:*:*:*:*:*:*:*
- cpe:2.3:a:schedmd:slurm:17.11.1.2:*:*:*:*:*:*:*
- cpe:2.3:a:schedmd:slurm:17.11.2.1:*:*:*:*:*:*:*
- cpe:2.3:a:schedmd:slurm:17.11.3.1:*:*:*:*:*:*:*
- cpe:2.3:a:schedmd:slurm:17.11.3.2:*:*:*:*:*:*:*
- cpe:2.3:a:schedmd:slurm:17.11.4.1:*:*:*:*:*:*:*
- cpe:2.3:a:schedmd:slurm:17.11.5.1:*:*:*:*:*:*:*
- cpe:2.3:a:schedmd:slurm:17.11.6.1:*:*:*:*:*:*:*
- osv-coords13 versionspkg:rpm/suse/slurm_18_08&distro=SUSE%20Linux%20Enterprise%20Module%20for%20HPC%2015pkg:rpm/suse/pdsh&distro=SUSE%20Linux%20Enterprise%20Module%20for%20HPC%2012pkg:rpm/suse/pdsh_slurm_18_08&distro=SUSE%20Linux%20Enterprise%20Module%20for%20HPC%2012pkg:rpm/suse/slurm_20_02&distro=SUSE%20Linux%20Enterprise%20Module%20for%20HPC%2012pkg:rpm/suse/slurm&distro=SUSE%20Linux%20Enterprise%20Module%20for%20HPC%2012pkg:rpm/opensuse/slurm&distro=openSUSE%20Tumbleweedpkg:rpm/suse/slurm_18_08&distro=SUSE%20Linux%20Enterprise%20Module%20for%20HPC%2012pkg:rpm/suse/slurm&distro=SUSE%20Linux%20Enterprise%20Module%20for%20HPC%2015pkg:rpm/suse/slurm_20_11&distro=SUSE%20Linux%20Enterprise%20Module%20for%20HPC%2012pkg:rpm/suse/pdsh_slurm_20_02&distro=SUSE%20Linux%20Enterprise%20Module%20for%20HPC%2012pkg:rpm/suse/pdsh_slurm_20_11&distro=SUSE%20Linux%20Enterprise%20Module%20for%20HPC%2012pkg:rpm/suse/pdsh&distro=SUSE%20Linux%20Enterprise%20Module%20for%20HPC%2015pkg:rpm/suse/pdsh&distro=SUSE%20Linux%20Enterprise%20Module%20for%20HPC%2015%20SP1
< 18.08.9-1.5.2+ 12 more
- (no CPE)range: < 18.08.9-1.5.2
- (no CPE)range: < 2.33-7.18.1
- (no CPE)range: < 2.34-7.26.2
- (no CPE)range: < 20.02.3-3.5.1
- (no CPE)range: < 17.02.11-6.19.1
- (no CPE)range: < 21.08.1-1.1
- (no CPE)range: < 18.08.9-3.5.1
- (no CPE)range: < 17.11.7-6.3.1
- (no CPE)range: < 20.11.4-3.5.1
- (no CPE)range: < 2.34-7.26.2
- (no CPE)range: < 2.34-7.32.1
- (no CPE)range: < 2.33-7.6.1
- (no CPE)range: < 2.33-7.6.1
Patches
Vulnerability mechanics
References
5- lists.debian.org/debian-lts-announce/2018/07/msg00029.htmlnvdMailing ListThird Party Advisory
- lists.debian.org/debian-lts-announce/2018/08/msg00008.htmlnvdMailing ListThird Party Advisory
- lists.schedmd.com/pipermail/slurm-announce/2018/000008.htmlnvdVendor Advisory
- www.debian.org/security/2018/dsa-4254nvdThird Party Advisory
- www.schedmd.com/news.phpnvdVendor Advisory
News mentions
0No linked articles in our index yet.