CVE-2020-27746: Debian Linux
Low severity, CVSS 3.7. EPSS: 0.8% chance of exploitation in the next 30 days.
Slurm before 19.05.8 and 20.x before 20.02.6 exposes Sensitive Information to an Unauthorized Actor because xauth for X11 magic cookies is affected by a race condition in a read operation on the /proc filesystem.
Affected products
- Debian Debian Linux: version 10.0 only
- Schedmd Slurm: before 19.05.8 (fixed in 19.05.8); from 20.0.0, before 20.02.6 (fixed in 20.02.6)
Published 2020-11-27. Last modified 2026-06-17.