File _patchinfo of Package patchinfo.17656
<patchinfo incident="17656">
<issue tracker="cve" id="2020-27746"/>
<issue tracker="cve" id="2020-27745"/>
<issue tracker="bnc" id="1155784">VUL-0: CVE-2019-19727: slurm: slurmdbd: slurmdbd.conf has an insecure Permission by default</issue>
<issue tracker="bnc" id="1153259">slurm-slurmdbd postrans script fails</issue>
<issue tracker="bnc" id="1178891">VUL-0: CVE-2020-27746: slurm,slurm_18_08,slurm_20_02,slurmlibs: potential leak of the magic cookie when sent as an argument to the xauth command</issue>
<issue tracker="bnc" id="1178890">VUL-0: CVE-2020-27745: slurm,slurmlibs,slurm_18_08,slurm_20_02: potential buffer overflows from use of unpackmem()</issue>
<packager>anag</packager>
<rating>important</rating>
<category>security</category>
<summary>Security update for slurm_17_11</summary>
<description>This update for slurm_17_11 fixes the following issues:
- CVE-2020-27745: Fixed potential buffer overflows from use of unpackmem() (bsc#1178890).
- CVE-2020-27746: Fixed a potential leak of the magic cookie when sent as an argument to the xauth command (bsc#1178891).
- Fixed %posttrans macro _res_update to cope with added newline (bsc#1153259).
- Fixed permissions of slurmdbd.conf (bsc#1155784).</description>
</patchinfo>