Comment 0 for bug 1845158

Revision history for this message
Paride Legovini (paride) wrote :

An unescaped string makes an SQL injection possible in slurm 17.11.x, 18.08.0 through 18.08.7, and 19.05.0. See the links in the CVE page for more details.

Upstream fix: https://github.com/SchedMD/slurm/commit/afa7d743f407c60a7c8a4bd98a10be32c82988b5