VYPR

rpm package

opensuse/pacemaker&distro=openSUSE Leap 15.0

pkg:rpm/opensuse/pacemaker&distro=openSUSE%20Leap%2015.0

Vulnerabilities (3)

  • CVE-2019-3885Apr 18, 2019
    affected < 1.1.18+20180430.b12c320f5-lp150.2.9.1fixed 1.1.18+20180430.b12c320f5-lp150.2.9.1

    A use-after-free flaw was found in pacemaker up to and including version 2.0.1 which could result in certain sensitive information to be leaked via the system logs.

  • CVE-2018-16878Apr 18, 2019
    affected < 1.1.18+20180430.b12c320f5-lp150.2.9.1fixed 1.1.18+20180430.b12c320f5-lp150.2.9.1

    A flaw was found in pacemaker up to and including version 2.0.1. An insufficient verification inflicted preference of uncontrolled processes can lead to DoS

  • CVE-2018-16877Apr 18, 2019
    affected < 1.1.18+20180430.b12c320f5-lp150.2.9.1fixed 1.1.18+20180430.b12c320f5-lp150.2.9.1

    A flaw was found in the way pacemaker's client-server authentication was implemented in versions up to and including 2.0.0. A local attacker could use this flaw, and combine it with other IPC weaknesses, to achieve local privilege escalation.