Schedmd · Slurm · CVE-2019-19728
**Name of the Vulnerable Software and Affected Versions**
SchedMD Slurm versions prior to 18.08.9
SchedMD Slurm versions 19.x prior to 19.05.5
**Description**
The issue is related to the `srun --uid` command in the SLURM resource management system, which is associated with insecure privilege management. Exploitation of this issue allows a remote attacker to access confidential data, compromise its integrity, and cause a denial of service.
**Recommendations**
For SchedMD Slurm versions prior to 18.08.9, update to version 18.08.9 or later.
For SchedMD Slurm versions 19.x prior to 19.05.5, update to version 19.05.5 or later.