VYPR

rpm package

almalinux/pacemaker-cts

pkg:rpm/almalinux/pacemaker-cts

Vulnerabilities (2)

  • CVE-2026-10649HigJun 16, 2026
    affected < 2.1.7-5.6.el8_10fixed 2.1.7-5.6.el8_10

    A flaw was found in Pacemaker. An unauthenticated remote attacker can exploit an integer overflow vulnerability in the remote message decompression process. By sending a specially crafted compressed remote message before authentication, an attacker can cause memory corruption, le

  • CVE-2020-25654HigNov 24, 2020
    affected < 2.0.4-6.el8_3.1fixed 2.0.4-6.el8_3.1

    An ACL bypass flaw was found in pacemaker. An attacker having a local account on the cluster and in the haclient group could use IPC communication with various daemons directly to perform certain tasks that they would be prevented by ACLs from doing if they went through the confi