Your submission was sent successfully! Close

You have successfully unsubscribed! Close

Thank you for signing up for our newsletter!
In these regular emails you will find the latest updates about Ubuntu and upcoming events where you can meet our team.Close

CVE-2011-4925

Published: 13 January 2012

Terascale Open-Source Resource and Queue Manager (aka TORQUE Resource Manager) before 2.5.9, when munge authentication is used, allows remote authenticated users to impersonate arbitrary user accounts via unspecified vectors.

Notes

AuthorNote
sbeattie
munge auth did not get added to torque until 2.5.3
see http://www.clusterresources.com/products/torque/docs/changelog.shtml#253

Priority

Medium

Status

Package Release Status
torque
Launchpad, Ubuntu, Debian
hardy Not vulnerable
(no munge auth support)
lucid Not vulnerable
(no munge auth support)
maverick Not vulnerable
(no munge auth support)
natty Not vulnerable
(no munge auth support)
oneiric Not vulnerable
(no munge auth support)
upstream Needs triage