CVE-2014-0748
27.12.2014, 02:59
apinit on Cray devices with CLE before 4.2.UP02 and 5.x before 5.1.UP00 does not use alpsauth data to validate the UID in a launch message, which allows local users to gain privileges via a modified aprun program, aka ID FN5912.Enginsight
Vendor | Product | Version |
---|---|---|
cray | cray_linux_environment | 𝑥 ≤ 4.2 |
cray | cray_linux_environment | 5.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration