Security Disclosure
This disclosure provides information about vulnerabilities found in the slurm packages included in the container. While these packages are bundled with the container, they are not actively used by any services or workflows. The vulnerabilities are linked to dependencies from PyTorch (PyT) and have been assigned high severity CVEs. Even though the slurm packages are inactive, we’re sharing this information to ensure full transparency.
Last Updated: October 2024
CVE-xxx |
Ubuntu Link |
Severity |
Explanation |
---|---|---|---|
CVE-2022-29501 | https://ubuntu.com/security/CVE-2022-29501 | High | CVE comes from PyT dependency |
CVE-2022-29500 | https://ubuntu.com/security/CVE-2022-29500 | High | CVE comes from PyT dependency |