Summary: | <sys-cluster/torque-4.2.9: non-root users able to kill any process on any node in a job (CVE-2014-3684) | ||
---|---|---|---|
Product: | Gentoo Security | Reporter: | Agostino Sarubbo <ago> |
Component: | Vulnerabilities | Assignee: | Gentoo Security <security> |
Status: | RESOLVED FIXED | ||
Severity: | minor | CC: | cluster, jsbronder |
Priority: | Normal | ||
Version: | unspecified | ||
Hardware: | All | ||
OS: | Linux | ||
URL: | https://bugzilla.redhat.com/show_bug.cgi?id=1149044 | ||
Whiteboard: | ~3 [noglsa] | ||
Package list: | Runtime testing required: | --- |
Description
Agostino Sarubbo
2014-10-03 10:01:45 UTC
The prior 4.2 ebuild was unstable, probably no need for stabilization. +*torque-4.2.9-r1 (17 Oct 2014) + + 17 Oct 2014; Justin Bronder <jsbronder@gentoo.org> -torque-4.2.9.ebuild, + +torque-4.2.9-r1.ebuild, + +files/TRQ-2885-limit-tm_adopt-to-only-adopt-a-session-id-t.patch: + Apply upstream fixes for TRQ-2885. #524362 Thanks for the bump, Justin. The 4.2 branch is not stable, so closing noglsa. |