CVE-2014-0748

apinit on Cray devices with CLE before 4.2.UP02 and 5.x before 5.1.UP00 does not use alpsauth data to validate the UID in a launch message, which allows local users to gain privileges via a modified aprun program, aka ID FN5912.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:o:cray:cray_linux_environment:*:*:*:*:*:*:*:*
cpe:2.3:o:cray:cray_linux_environment:5.1:*:*:*:*:*:*:*

Information

Published : 2014-12-26 18:59

Updated : 2014-12-30 03:22


NVD link : CVE-2014-0748

Mitre link : CVE-2014-0748


JSON object : View

CWE
CWE-20

Improper Input Validation

Advertisement

dedicated server usa

Products Affected

cray

  • cray_linux_environment