Vulnerabilities > Platform

DATE CVE VULNERABILITY TITLE RISK
2004-11-23 CVE-2004-0318 Privilege Escalation vulnerability in Platform Load Sharing Facility EAuth
Load Sharing Facility (LSF) 4.x, 5.x, and 6.x uses the LSF_EAUTH_UID environment variable, if it exists, instead of the real UID of the user, which could allow remote attackers within the local cluster to gain privileges.
network
low complexity
platform
critical
10.0
2004-11-23 CVE-2004-0317 Buffer Overflow vulnerability in Platform Load Sharing Facility EAuth Component
Buffer overflow in eauth in Load Sharing Facility 4.x, 5.x, and 6.x allows local users or remote attackers within the LSF cluster to cause a denial of service (segmentation fault) and possibly execute arbitrary code via a long LSF_From_PC parameter.
network
low complexity
platform
critical
10.0
2003-05-22 CVE-2003-0337 Local Security vulnerability in Platform Lsadmin 5.1
The ckconfig command in lsadmin for Load Sharing Facility (LSF) 5.1 allows local users to execute arbitrary programs by modifying the LSF_ENVDIR environment variable to reference an alternate lsf.conf file, then modifying LSF_SERVERDIR to point to a malicious lim program, which lsadmin then executes.
local
low complexity
platform
4.6