Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2014-3684
Description:The tm_adopt function in lib/Libifl/tm.c in Terascale Open-Source Resource and Queue Manager (aka TORQUE Resource Manager) 5.0.x, 4.5.x, 4.2.x, and earlier does not validate that the owner of the process also owns the adopted session id, which allows remote authenticated users to kill arbitrary processes via a crafted executable.
Test IDs: 1.3.6.1.4.1.25623.1.1.1.2.2014.78   1.3.6.1.4.1.25623.1.1.10.2014.0408   1.3.6.1.4.1.25623.1.0.703058  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2014-3684
61350
http://secunia.com/advisories/61350
61960
http://secunia.com/advisories/61960
DSA-3058
http://www.debian.org/security/2014/dsa-3058
FEDORA-2015-8544
http://lists.fedoraproject.org/pipermail/package-announce/2015-May/159201.html
FEDORA-2015-8571
http://lists.fedoraproject.org/pipermail/package-announce/2015-May/159183.html
FEDORA-2015-8577
http://lists.fedoraproject.org/pipermail/package-announce/2015-May/159259.html
MDVSA-2015:124
http://www.mandriva.com/security/advisories?name=MDVSA-2015:124
[oss-security] 20141002 tm_adopt() vulnerability in TORQUE Resource Manager
http://openwall.com/lists/oss-security/2014/10/02/44
[oss-security] 20141003 Re: tm_adopt() vulnerability in TORQUE Resource Manager
http://openwall.com/lists/oss-security/2014/10/02/45
http://advisories.mageia.org/MGASA-2014-0408.html
http://advisories.mageia.org/MGASA-2014-0408.html




© 1998-2025 E-Soft Inc. All rights reserved.