CVE-2011-2193
CVE-2011-2193
Multiple buffer overflows in Terascale Open-Source Resource and Queue Manager (aka TORQUE Resource Manager) 2.x before 2.4.14, 2.5.x before 2.5.6, and 3.x before 3.0.2 allow (1) remote authenticated users to gain privileges via a long Job_Name field in a qsub command to the server, and might allow (2) local users to gain privileges via vectors involving a long host variable in pbs_iff.
Affected products
n/a · n/aWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
http://lists.fedoraproject.org/pipermail/package-announce/2011-July/062638.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2011-June/061645.htmlhttps://bugzilla.redhat.com/show_bug.cgi?id=711463http://secunia.com/advisories/45039http://secunia.com/advisories/45040http://securityreason.com/securityalert/8304https://exchange.xforce.ibmcloud.com/vulnerabilities/68151https://exchange.xforce.ibmcloud.com/vulnerabilities/68152http://www.clusterresources.com/downloads/torque/CHANGELOGS/torque-2.4.14.CHANGELOGhttp://www.clusterresources.com/downloads/torque/CHANGELOGS/torque-2.5.6.CHANGELOGhttp://www.debian.org/security/2011/dsa-2329http://www.securityfocus.com/archive/1/518885/100/0/threaded