UbuntuUpdates.org

Package "torque"

Name: torque

Description:

This package is just an umbrella for a group of other packages, it has no description.
Description samples from packages in group:

  • shared library for Torque client and server
  • header files for libtorque2
  • command line interface to Torque server
  • GUI for torque clients

Latest version: 2.4.16+dfsg-1.3ubuntu1.1
Release: trusty (14.04)
Level: security
Repository: universe

Links



Other versions of "torque" in Trusty

Repository Area Version
updates universe 2.4.16+dfsg-1.3ubuntu1.1

Packages in group

Deleted packages are displayed in grey.


Changelog

Version: 2.4.16+dfsg-1.3ubuntu1.1 2019-02-04 20:06:14 UTC

  torque (2.4.16+dfsg-1.3ubuntu1.1) trusty-security; urgency=medium

  * SECURITY UPDATE: Buffer overflow vulnerability allows remote attackers
    to execute arbitrary code via a large count value.
    - debian/patches/CVE-2014-0749.patch: Fix stack-based buffer overflow in
      disrsi_.c
    - CVE-2014-0749
  * SECURITY UPDATE: Lack of validation on process owner allows remote
    authenticated users to kill arbitrary processes via a crafted executable.
    - debian/patches/CVE-2014-3684.patch: Limit tm_adopt to only adopt a session
      id that is owned by the calling user.
    - CVE-2014-3684

 -- Eduardo Barretto <email address hidden> Mon, 04 Feb 2019 12:00:09 -0200

CVE-2014-0749 Stack-based buffer overflow in lib/Libdis/disrsi_.c in Terascale Open-Source Resource and Queue Manager (aka TORQUE Resource Manager) 2.5.x through 2
CVE-2014-3684 The tm_adopt function in lib/Libifl/tm.c in Terascale Open-Source Resource and Queue Manager (aka TORQUE Resource Manager) 5.0.x, 4.5.x, 4.2.x, and e



About   -   Send Feedback to @ubuntu_updates