UBUNTU-CVE-2017-15566

Source
https://ubuntu.com/security/CVE-2017-15566
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2017/UBUNTU-CVE-2017-15566.json
JSON Data
https://api.test.osv.dev/v1/vulns/UBUNTU-CVE-2017-15566
Upstream
Downstream
Related
Published
2017-11-01T17:29:00Z
Modified
2025-09-08T16:44:28Z
Severity
  • 7.8 (High) CVSS_V3 - CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
  • Ubuntu - high
Summary
[none]
Details

Insecure SPANK environment variable handling exists in SchedMD Slurm before 16.05.11, 17.x before 17.02.9, and 17.11.x before 17.11.0rc2, allowing privilege escalation to root during Prolog or Epilog execution.

References

Affected packages

Ubuntu:Pro:16.04:LTS / slurm-llnl

Package

Name
slurm-llnl
Purl
pkg:deb/ubuntu/slurm-llnl@15.08.7-1ubuntu0.1~esm3?arch=source&distro=esm-apps/xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
15.08.7-1ubuntu0.1~esm3

Affected versions

14.*

14.11.8-4

15.*

15.08.4-1build1
15.08.4-1build2
15.08.7-1
15.08.7-1build1

Ecosystem specific

{
    "availability": "Available with Ubuntu Pro: https://ubuntu.com/pro",
    "binaries": [
        {
            "binary_version": "15.08.7-1ubuntu0.1~esm3",
            "binary_name": "libpam-slurm"
        },
        {
            "binary_version": "15.08.7-1ubuntu0.1~esm3",
            "binary_name": "libpmi0"
        },
        {
            "binary_version": "15.08.7-1ubuntu0.1~esm3",
            "binary_name": "libpmi0-dev"
        },
        {
            "binary_version": "15.08.7-1ubuntu0.1~esm3",
            "binary_name": "libslurm-dev"
        },
        {
            "binary_version": "15.08.7-1ubuntu0.1~esm3",
            "binary_name": "libslurm-perl"
        },
        {
            "binary_version": "15.08.7-1ubuntu0.1~esm3",
            "binary_name": "libslurm29"
        },
        {
            "binary_version": "15.08.7-1ubuntu0.1~esm3",
            "binary_name": "libslurmdb-dev"
        },
        {
            "binary_version": "15.08.7-1ubuntu0.1~esm3",
            "binary_name": "libslurmdb-perl"
        },
        {
            "binary_version": "15.08.7-1ubuntu0.1~esm3",
            "binary_name": "libslurmdb29"
        },
        {
            "binary_version": "15.08.7-1ubuntu0.1~esm3",
            "binary_name": "slurm-client"
        },
        {
            "binary_version": "15.08.7-1ubuntu0.1~esm3",
            "binary_name": "slurm-client-emulator"
        },
        {
            "binary_version": "15.08.7-1ubuntu0.1~esm3",
            "binary_name": "slurm-llnl"
        },
        {
            "binary_version": "15.08.7-1ubuntu0.1~esm3",
            "binary_name": "slurm-llnl-slurmdbd"
        },
        {
            "binary_version": "15.08.7-1ubuntu0.1~esm3",
            "binary_name": "slurm-wlm"
        },
        {
            "binary_version": "15.08.7-1ubuntu0.1~esm3",
            "binary_name": "slurm-wlm-basic-plugins"
        },
        {
            "binary_version": "15.08.7-1ubuntu0.1~esm3",
            "binary_name": "slurm-wlm-basic-plugins-dev"
        },
        {
            "binary_version": "15.08.7-1ubuntu0.1~esm3",
            "binary_name": "slurm-wlm-emulator"
        },
        {
            "binary_version": "15.08.7-1ubuntu0.1~esm3",
            "binary_name": "slurm-wlm-torque"
        },
        {
            "binary_version": "15.08.7-1ubuntu0.1~esm3",
            "binary_name": "slurmctld"
        },
        {
            "binary_version": "15.08.7-1ubuntu0.1~esm3",
            "binary_name": "slurmd"
        },
        {
            "binary_version": "15.08.7-1ubuntu0.1~esm3",
            "binary_name": "slurmdbd"
        },
        {
            "binary_version": "15.08.7-1ubuntu0.1~esm3",
            "binary_name": "sview"
        }
    ]
}