CVE-2023-49933: Schedmd Slurm

High severity, CVSS 7.5. EPSS: 0.4% chance of exploitation in the next 30 days.

An issue was discovered in SchedMD Slurm 22.05.x, 23.02.x, and 23.11.x. There is Improper Enforcement of Message Integrity During Transmission in a Communication Channel. This allows attackers to modify RPC traffic in a way that bypasses message hash checks. The fixed versions are 22.05.11, 23.02.7, and 23.11.1.

Affected products

  • Schedmd Slurm: from 22.05, before 22.05.12 (fixed in 22.05.12); from 23.02, before 23.02.7 (fixed in 23.02.7); version 23.11 only

Published 2023-12-14. Last modified 2026-06-17.