rpm package
almalinux/pacemaker-doc
pkg:rpm/almalinux/pacemaker-doc
Vulnerabilities (2)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2026-10649 | Hig | 8.6 | < 2.1.7-5.6.el8_10 | 2.1.7-5.6.el8_10 | Jun 16, 2026 | A flaw was found in Pacemaker. An unauthenticated remote attacker can exploit an integer overflow vulnerability in the remote message decompression process. By sending a specially crafted compressed remote message before authentication, an attacker can cause memory corruption, le | |
| CVE-2020-25654 | Hig | 7.2 | < 2.0.4-6.el8_3.1 | 2.0.4-6.el8_3.1 | Nov 24, 2020 | An ACL bypass flaw was found in pacemaker. An attacker having a local account on the cluster and in the haclient group could use IPC communication with various daemons directly to perform certain tasks that they would be prevented by ACLs from doing if they went through the confi |
- affected < 2.1.7-5.6.el8_10fixed 2.1.7-5.6.el8_10
A flaw was found in Pacemaker. An unauthenticated remote attacker can exploit an integer overflow vulnerability in the remote message decompression process. By sending a specially crafted compressed remote message before authentication, an attacker can cause memory corruption, le
- affected < 2.0.4-6.el8_3.1fixed 2.0.4-6.el8_3.1
An ACL bypass flaw was found in pacemaker. An attacker having a local account on the cluster and in the haclient group could use IPC communication with various daemons directly to perform certain tasks that they would be prevented by ACLs from doing if they went through the confi