CRITICAL🇵🇱 Wersja polska

CVE-2020-36770

CVSS 9.8v3.1pub. 2024-01-15upd. 2025-06-20

pkg_postinst in the Gentoo ebuild for Slurm through 22.05.3 unnecessarily calls chown to assign root's ownership on files in the live root filesystem. This could be exploited by the slurm user to become the owner of root-owned files.

🤖 AI Analysis
How it works

During package installation, the post-installation script pkg_postinst calls the chown command in a manner that is unnecessary, operating on files in the active root filesystem. A user acting in the context of the slurm account can exploit this to take ownership of files owned by the root user. The error is classified as CWE-732, which is incorrect permission assignment to critical resources.

Impact

An attacker with access to the slurm account can become the owner of system files belonging to root, which in practice can lead to privilege escalation and complete takeover of the system.

Mitigation & patch

Apply patches available from the vendor according to the references (https://bugs.gentoo.org/631552). It is recommended to update the Gentoo ebuild package for Slurm to a version free from the described vulnerability.

Who is affected

Gentoo ebuild for Slurm in versions through 22.05.3 inclusive.

Analysis generated by Claude AI (Anthropic) based on NVD data. Always verify with vendor.
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
  • Gentoo Ebuild For Slurm

    APP
    Gentoo
    ≤ 22.05.3
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
CWE
References

Related vulnerabilities

CVE-2024-12084CRITICAL9.8PL ✓same vendor

Heap-based buffer overflow w rsync daemon — zapis poza granicami bufora sum2

CVE-2016-20021CRITICAL9.8PL ✓same vendor

Brak weryfikacji podpisu PGP w Gentoo Portage emerge-webrsync

CVE-2023-28424CRITICAL9.1PL ✓same vendor

SQL Injection z możliwością RCE w Gentoo Soko (packages.gentoo.org)

CVE-2024-12085HIGH7.5same vendor

A flaw was found in rsync which could be triggered when rsync compares file checksums. This flaw allows an att...

CVE-2023-26033HIGH7.5same vendor

Gentoo soko is the code that powers packages.gentoo.org. Versions prior to 1.0.1 are vulnerable to SQL Injecti...