CVE-2011-2193 describes multiple buffer overflow vulnerabilities in Terascale Open-Source Resource and Queue Manager (TORQUE Resource Manager) versions 2.x, 2.5.x, and 3.x prior to specified patches. These flaws allow remote authenticated users to escalate privileges via a long Job_Name in a qsub command, and potentially local users through a long host variable in pbs_iff. With a CVSS score of 8.5, this vulnerability is considered high severity due to its network-based attack vector, medium complexity, and complete compromise of confidentiality, integrity, and availability. Despite its severity, there is no evidence of active exploitation, no known public exploit code (Metasploit, Nuclei, ExploitDB), and minimal community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
2.1.0CPE matchmatch criteria | cpe:2.3:a:clusterresources:torque_resource_manager:2.1.0:*:*:*:*:*:*:* | ||
2.1.0p11CPE matchmatch criteria | cpe:2.3:a:clusterresources:torque_resource_manager:2.1.0p11:*:*:*:*:*:*:* | ||
2.1.1CPE matchmatch criteria | cpe:2.3:a:clusterresources:torque_resource_manager:2.1.1:*:*:*:*:*:*:* | ||
2.1.2CPE matchmatch criteria | cpe:2.3:a:clusterresources:torque_resource_manager:2.1.2:*:*:*:*:*:*:* | ||
2.1.3CPE matchmatch criteria | cpe:2.3:a:clusterresources:torque_resource_manager:2.1.3:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:M/Au:S/C:C/I:C/A:C
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.