[ClusterLabs] Fix for CVE-2024-25126, CVE-2024-26141 and CVE-2024-26146

A Gunasekar a.gunasekar at ericsson.com
Mon Aug 5 10:23:45 UTC 2024


Hi Team,
Please be informed, we have got notified from our security tool that our pcs version 0.10 is affected by the CVE-2024-25126, CVE-2024-26141 and CVE-2024-26146
It would be great if we help to get answers for the below queries.

We are currently in RHEL 8.4 OS and using pcs 0.10 version, Is there any fix planned/available for this affection version (0.10.x) of pcs ?

  *   Let us know in which release this CVEs fix are planned ?

Our system Details:-
OS Version: RHEL 8.4
Name        : pcs
Version     : 0.10.16
Release     : 1.el8
Architecture: x86_64


[Ericsson]<http://www.ericsson.com/>
Gunasekar A
Senior Software Analyst
BDGS SA BSS PDU BSS PDG EC CH NGCRS
Mobile: +919894561292
Email ID: a.gunasekar at ericsson.com<mailto:a.gunasekar at ericsson.com>


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.clusterlabs.org/pipermail/users/attachments/20240805/84f37bf8/attachment.htm>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: image001.png
Type: image/png
Size: 320 bytes
Desc: image001.png
URL: <https://lists.clusterlabs.org/pipermail/users/attachments/20240805/84f37bf8/attachment.png>


More information about the Users mailing list