VYPR

pacemaker

by Pacemaker\/corosync Configuration System Project

Source repositories

CVEs (2)

  • CVE-2020-25654HigNov 24, 2020
    risk 0.47cvss 7.2epss 0.02

    An ACL bypass flaw was found in pacemaker. An attacker having a local account on the cluster and in the haclient group could use IPC communication with various daemons directly to perform certain tasks that they would be prevented by ACLs from doing if they went through the…

  • CVE-2011-5271MedNov 12, 2019
    risk 0.36cvss 5.5epss 0.00

    Pacemaker before 1.1.6 configure script creates temporary files insecurely