pacemaker
by Pacemaker\/corosync Configuration System Project
Source repositories
CVEs (2)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2020-25654 | Hig | 0.47 | 7.2 | 0.02 | Nov 24, 2020 | An ACL bypass flaw was found in pacemaker. An attacker having a local account on the cluster and in the haclient group could use IPC communication with various daemons directly to perform certain tasks that they would be prevented by ACLs from doing if they went through the… | ||
| CVE-2011-5271 | Med | 0.36 | 5.5 | 0.00 | Nov 12, 2019 | Pacemaker before 1.1.6 configure script creates temporary files insecurely |
- risk 0.47cvss 7.2epss 0.02
An ACL bypass flaw was found in pacemaker. An attacker having a local account on the cluster and in the haclient group could use IPC communication with various daemons directly to perform certain tasks that they would be prevented by ACLs from doing if they went through the…
- risk 0.36cvss 5.5epss 0.00
Pacemaker before 1.1.6 configure script creates temporary files insecurely