A buffer overflow bug has been discovered in Slurm version 14.11. Systems with large job arrays would be the most likely effected and would over-write a few bytes in the stack, which could result in the slurmctld daemon aborting. We do not believe this bug can be exploited to compromise security. For computers Slurm versions between 14.11.4 and 14.11.10, we recommend either applying the patch available from github:
https://github.com/SchedMD/slurm/commit/cb5046ca316774042a7a219d831dd764a671fa1c.patch

or upgrading to version 14.11.11 (now available in the "archive" section of the download) or the latest Slurm version 15.08, see:
http://www.schedmd.com/#repos
http://www.schedmd.com/#archives

Reply via email to