RLBA-2022:1871
corosync bug fix and enhancement update
For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section.
Copyright 2024 Rocky Enterprise Software Foundation
Rocky Linux 8
1
None
An update is available for corosync.
This update affects Rocky Linux 8.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list
For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section.
rocky-linux-8-aarch64-resilientstorage-rpms
corosync-3.1.5-2.el8.aarch64.rpm
dfda9e924f288708405ad3baf7640eff6d0ee963610ec5c21630fbaf546df152
corosynclib-devel-3.1.5-2.el8.aarch64.rpm
e9983360ee01b236e2f008958cc38cf08797dacaba41f195ca5aac5f217bc814
spausedd-3.1.5-2.el8.aarch64.rpm
940b72b514c9a61f1f6db1e9802af14d199745cbfcd6ffdd70d3f43c3da62fa9
RLBA-2022:7520
fence-agents bug fix and enhancement update
For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section.
Copyright 2024 Rocky Enterprise Software Foundation
Rocky Linux 8
1
None
An update is available for fence-agents.
This update affects Rocky Linux 8.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list
For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section.
rocky-linux-8-aarch64-resilientstorage-rpms
fence-agents-azure-arm-4.2.1-103.el8.noarch.rpm
cf5f8cf811839a88bd8130a72f1b06da78ef42a3f21081256ccafbd2d38394ee
fence-agents-gce-4.2.1-103.el8.noarch.rpm
711384984265c124961bdf09b82d2fc464a8005660e5d9770c8d2a4f96514d70
RLBA-2022:7833
pacemaker bug fix and enhancement update
The Pacemaker cluster resource manager is a collection of technologies working together to maintain data integrity and application availability in the event of failures.
Bug fix(es) and Enhancement(s):
* Running crm_node from an OCF resource agent's metadata action will hang
until the timeout is reached because metadata actions block the controller
(BZ#2125588)
* Resources that are reordered in the CIB are not moved until the next natural transition (BZ#2125589)
* Resource agents that call crm_mon in their monitor action, such as
ocf:heartbeat:pgsql, may incorrectly return a failure at cluster shutdown
(BZ#2133830)
Copyright 2024 Rocky Enterprise Software Foundation
Rocky Linux 8
1
None
An update is available for pacemaker.
This update affects Rocky Linux 8.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list
The Pacemaker cluster resource manager is a collection of technologies working together to maintain data integrity and application availability in the event of failures.
Bug fix(es) and Enhancement(s):
* Running crm_node from an OCF resource agent's metadata action will hang
until the timeout is reached because metadata actions block the controller
(BZ#2125588)
* Resources that are reordered in the CIB are not moved until the next natural transition (BZ#2125589)
* Resource agents that call crm_mon in their monitor action, such as
ocf:heartbeat:pgsql, may incorrectly return a failure at cluster shutdown
(BZ#2133830)
rocky-linux-8-aarch64-resilientstorage-rpms
pacemaker-2.1.4-5.el8_7.2.aarch64.rpm
cb70ce2d725aa05fc6bc2db0cffb8373e19239ba0e2a5225e2c06707735eeda4
pacemaker-cli-2.1.4-5.el8_7.2.aarch64.rpm
902f8ec69e7873349f31da75c0cebee341dd80b828eb8ee423ff42627948a336
pacemaker-cts-2.1.4-5.el8_7.2.noarch.rpm
552913a64c186f8ca6060360ee7d3293e3f2a7fcddb86ab9d40ff2e78a08bb29
pacemaker-doc-2.1.4-5.el8_7.2.noarch.rpm
46e32d956ea3ef90debb6206bdf000d909363855e7b9138eb47f4861ab2a595f
pacemaker-libs-devel-2.1.4-5.el8_7.2.aarch64.rpm
0097710612e29f4872295746ecdcf82718750ef0064cd58d741fee666de7818a
pacemaker-nagios-plugins-metadata-2.1.4-5.el8_7.2.noarch.rpm
7d0ea13b54906097007ec155a9b9bc883aa3cf80e50081e599033f7df5c1939b
pacemaker-remote-2.1.4-5.el8_7.2.aarch64.rpm
34815a3c710e6edb6decdddd783997b83159b71f697e13dfae8e2be9e35b5138
RLEA-2019:3314
python3-azure-sdk bug fix and enhancement update
For detailed information on changes in this release, see the Rocky Linux 8.1 Release Notes linked from the References section.
Copyright 2024 Rocky Enterprise Software Foundation
Rocky Linux 8
1
None
An update is available for python3-azure-sdk.
This update affects Rocky Linux 8.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list
For detailed information on changes in this release, see the Rocky Linux 8.1 Release Notes linked from the References section.
rocky-linux-8-aarch64-resilientstorage-rpms
python3-azure-sdk-4.0.0-9.el8.noarch.rpm
aa7cd4bd1d321e0b302bf94afab40b115c5b5d034382f088f5974b59dfcf54f6
RLBA-2020:3148
Rocky Enterprise Software Foundation OpenStack Platform 16.1 bug fix and enhancement advisory
Rocky Enterprise Software Foundation OpenStack Platform provides the facilities for building, deploying
and monitoring a private or public infrastructure-as-a-service (IaaS) cloud
running on commonly available physical hardware.
For additional information about the items in this advisory, refer to the Technical Notes chapter of the Release Notes, https://access.redhat.com/documentation/en-us/red_hat_openstack_platform/16.1/html/release_notes/chap-technical_notes
Copyright 2024 Rocky Enterprise Software Foundation
Rocky Linux 8
1
None
An update is available for python-gflags, python-oauth2client, google-api-python-client, python-httplib2, python-uritemplate.
This update affects Rocky Linux 8.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list
Rocky Enterprise Software Foundation OpenStack Platform provides the facilities for building, deploying
and monitoring a private or public infrastructure-as-a-service (IaaS) cloud
running on commonly available physical hardware.
For additional information about the items in this advisory, refer to the Technical Notes chapter of the Release Notes, https://access.redhat.com/documentation/en-us/red_hat_openstack_platform/16.1/html/release_notes/chap-technical_notes
rocky-linux-8-aarch64-resilientstorage-rpms
python3-gflags-2.0-13.el8.noarch.rpm
8cac8dc7fe48f077355f298618945b2792ac9abd033ad53edc5eeea17ca9cf7c
python3-google-api-client-1.6.5-3.el8.noarch.rpm
2ce75f035008a471ebbf565ec52f63568abcf338cdd7d5994d2de7b2b7001c56
python3-httplib2-0.10.3-4.el8.noarch.rpm
6e8b831ea4c97e85d08e061f6ed8f03ffd62a7ab0df8bc9b2f3222fd2c33e8b7
python3-oauth2client-4.1.2-6.el8.noarch.rpm
c2725cc8a16722c6642621a1a479d94bf8da307834b1d80178b5ad71fab363b9
python3-uritemplate-3.0.0-3.el8.noarch.rpm
a5d0d004c1b556772f5de2ca54e28a561aea0f0d4186343418f1bb8416493455
RLBA-2021:1740
corosync-qdevice bug fix and enhancement update
For detailed information on changes in this release, see the Rocky Enterprise Software Foundation
Enterprise Linux 8.4 Release Notes linked from the References section.
Copyright 2024 Rocky Enterprise Software Foundation
Rocky Linux 8
1
None
An update is available for corosync-qdevice.
This update affects Rocky Linux 8.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list
For detailed information on changes in this release, see the Rocky Enterprise Software Foundation
Enterprise Linux 8.4 Release Notes linked from the References section.
rocky-linux-8-aarch64-resilientstorage-rpms
corosync-qdevice-3.0.1-1.el8.aarch64.rpm
0f62a1fec7fd9d930c5744936560111700153937cbdaf3281d257b549365dda8
corosync-qnetd-3.0.1-1.el8.aarch64.rpm
f97b0e7e525aef232ef57cf5521623c7477c333d7ba1100a11bdfc671ac5c1b7
RLEA-2021:3483
Rocky Enterprise Software Foundation OpenStack Platform (RHOSP) 16.2 enhancement advisory
Rocky Enterprise Software Foundation OpenStack Platform provides the facilities for building, deploying
and monitoring a private or public infrastructure-as-a-service (IaaS) cloud
running on commonly available physical hardware.
For additional information about the items in this advisory, refer to the
Technical Notes chapter of the Release Notes,
https://access.redhat.com/documentation/en-us/red_hat_openstack_platform/16
.2/html/release_notes/chap-technical_notes
Copyright 2024 Rocky Enterprise Software Foundation
Rocky Linux 8
1
None
An update is available for google-api-python-client, python-gflags, python-oauth2client, python-uritemplate.
This update affects Rocky Linux 8.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list
Rocky Enterprise Software Foundation OpenStack Platform provides the facilities for building, deploying
and monitoring a private or public infrastructure-as-a-service (IaaS) cloud
running on commonly available physical hardware.
For additional information about the items in this advisory, refer to the
Technical Notes chapter of the Release Notes,
https://access.redhat.com/documentation/en-us/red_hat_openstack_platform/16
.2/html/release_notes/chap-technical_notes
rocky-linux-8-aarch64-resilientstorage-rpms
python3-gflags-2.0-13.el8.noarch.rpm
8cac8dc7fe48f077355f298618945b2792ac9abd033ad53edc5eeea17ca9cf7c
python3-google-api-client-1.6.5-3.el8.noarch.rpm
2ce75f035008a471ebbf565ec52f63568abcf338cdd7d5994d2de7b2b7001c56
python3-oauth2client-4.1.2-6.el8.noarch.rpm
c2725cc8a16722c6642621a1a479d94bf8da307834b1d80178b5ad71fab363b9
python3-uritemplate-3.0.0-3.el8.noarch.rpm
a5d0d004c1b556772f5de2ca54e28a561aea0f0d4186343418f1bb8416493455
RLSA-2022:7447
Moderate: pcs security, bug fix, and enhancement update
The pcs packages provide a command-line configuration system for the Pacemaker and Corosync utilities.
Security Fix(es):
* pcs: improper authentication via PAM (CVE-2022-1049)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Additional Changes:
For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section.
Copyright 2024 Rocky Enterprise Software Foundation
Rocky Linux 8
1
Moderate
An update is available for pcs.
This update affects Rocky Linux 8.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list
The pcs packages provide a command-line configuration system for the Pacemaker and Corosync utilities.
Security Fix(es):
* pcs: improper authentication via PAM (CVE-2022-1049)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Additional Changes:
For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section.
rocky-linux-8-aarch64-resilientstorage-rpms
pcs-snmp-0.10.14-5.el8.aarch64.rpm
67048e23b490ecd4020e8b919ad4fcb73acde5b0c6028a0419f1e3dbfeac63ee
pcs-0.10.14-5.el8.aarch64.rpm
29dff6e07380379a7c89f43c0d848077d1dc019c352ce45145600d997a89829e
RLBA-2022:7454
booth bug fix and enhancement update
For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section.
Copyright 2024 Rocky Enterprise Software Foundation
Rocky Linux 8
1
None
An update is available for booth.
This update affects Rocky Linux 8.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list
For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section.
rocky-linux-8-aarch64-resilientstorage-rpms
booth-1.0-199.2.ac1d34c.git.el8.aarch64.rpm
58fd712469126c4f2c55ed362b601e47ea40ba02fbe40c88268942c81f27649f
booth-arbitrator-1.0-199.2.ac1d34c.git.el8.noarch.rpm
6bde07ed2cbf728a7a1e7cea0155f5073747401047b072b55efefd176553e716
booth-core-1.0-199.2.ac1d34c.git.el8.aarch64.rpm
87ba589b09df0762944560553963bd40c6413cd176a4f95098f49181d9372932
booth-site-1.0-199.2.ac1d34c.git.el8.noarch.rpm
0de36f517ccbb9fe472995e866243e82ec8e3f16b1d96c748d2b3a40ffac123f
booth-test-1.0-199.2.ac1d34c.git.el8.noarch.rpm
19010dc94aa1435246540affaec7b27768cdc17d7f1bd1325479eec9d1652053
RLBA-2022:7815
kronosnet bug fix and enhancement update
For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section.
Copyright 2024 Rocky Enterprise Software Foundation
Rocky Linux 8
1
None
An update is available for kronosnet.
This update affects Rocky Linux 8.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list
For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section.
rocky-linux-8-aarch64-resilientstorage-rpms
libknet1-1.24-2.el8.aarch64.rpm
83109d06e8afb5ffa7919c788d4b9e753e09585180b8d023d5ca089a35c92d31
libknet1-compress-bzip2-plugin-1.24-2.el8.aarch64.rpm
2cf88b2c51a466c922d7c2768f453f9014368179df66fae629454076f24c00d2
libknet1-compress-lz4-plugin-1.24-2.el8.aarch64.rpm
a5833dd09c07f9c389780bf2dad065b56d01756c40aef48fad6c39bf12a99d88
libknet1-compress-lzma-plugin-1.24-2.el8.aarch64.rpm
5bc1d8d9d299753a5368db8d4317b8025ab0c520f35fd4a2dd717d4e0edae03e
libknet1-compress-lzo2-plugin-1.24-2.el8.aarch64.rpm
787c1886c0fc614ac099c524ee845f76acb9f45c4ebeabcf6ccf46ddab8b0072
libknet1-compress-plugins-all-1.24-2.el8.aarch64.rpm
dda900e58b2df66512240addb40caa5b5710ae21f127586db9fc9cb1da9bfde5
libknet1-compress-zlib-plugin-1.24-2.el8.aarch64.rpm
dc97baa94ec95d3bfe7d0d9ab83b46d6e04f6429651ecb1cdd1f7b26e571fa26
libknet1-crypto-nss-plugin-1.24-2.el8.aarch64.rpm
7f7ea643b1e0464bbc1d91796b17d6db92182dbfe905ae042f84d73a026831f7
libknet1-crypto-openssl-plugin-1.24-2.el8.aarch64.rpm
a5e7d09447698819c48ca9ddcfa05c0cb85637dd1bd0952934927afda68b2803
libknet1-crypto-plugins-all-1.24-2.el8.aarch64.rpm
d47df33fa46cc7464d9cb1d351d7224af33095b8282cf4e64833ef6cf8dfb806
libknet1-plugins-all-1.24-2.el8.aarch64.rpm
1afadd649eae81855dbdf62a70a336fa74589cba906e01a3e1fa6dae917133a1
libnozzle1-1.24-2.el8.aarch64.rpm
c93a5a5e0b6c7a49fecd9bc7b2dd1990122d9555b61aae3971f757fb86298780
RLEA-2022:7823
resource-agents bug fix and enhancement update
The resource-agents packages provide the Pacemaker and RGManager service managers with a set of scripts. These scripts interface with several services to allow operating in a high-availability (HA) environment.
Bug Fix(es) and Enhancement(s):
* azure-events-az: Resource agent azure-events testing issue (BZ#2130986)
* IPsrcaddr: Fail to perform the stop operation with `Error: Invalid scope` (BZ#2134536)
Copyright 2024 Rocky Enterprise Software Foundation
Rocky Linux 8
1
None
An update is available for resource-agents.
This update affects Rocky Linux 8.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list
The resource-agents packages provide the Pacemaker and RGManager service managers with a set of scripts. These scripts interface with several services to allow operating in a high-availability (HA) environment.
Bug Fix(es) and Enhancement(s):
* azure-events-az: Resource agent azure-events testing issue (BZ#2130986)
* IPsrcaddr: Fail to perform the stop operation with `Error: Invalid scope` (BZ#2134536)
rocky-linux-8-aarch64-resilientstorage-rpms
resource-agents-4.9.0-29.el8_7.2.aarch64.rpm
15c3e6a54a7bd3ddf346fbc7f1bcd67a3f2180819ec3753e7259311e1ccd52d6
resource-agents-paf-4.9.0-29.el8_7.2.aarch64.rpm
3775ff9b39d6c982a15a77ac7168f2427f6c49db60613bb5e41c9db69f1d8fd5
RLBA-2023:0108
resource-agents bug fix and enhancement update
The resource-agents packages provide the Pacemaker and RGManager service managers with a set of scripts. These scripts interface with several services to allow operating in a high-availability (HA) environment.
Bug Fix(es) and Enhancement(s):
* vdo-vol: If the underlying device used does not exist, then the probe will always fail (BZ#2144866)
Copyright 2024 Rocky Enterprise Software Foundation
Rocky Linux 8
1
None
An update is available for resource-agents.
This update affects Rocky Linux 8.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list
The resource-agents packages provide the Pacemaker and RGManager service managers with a set of scripts. These scripts interface with several services to allow operating in a high-availability (HA) environment.
Bug Fix(es) and Enhancement(s):
* vdo-vol: If the underlying device used does not exist, then the probe will always fail (BZ#2144866)
rocky-linux-8-aarch64-resilientstorage-rpms
resource-agents-4.9.0-29.el8_7.3.aarch64.rpm
bbcc048df0c768c9e0e069807cde0f737139eaeea07ce3b5db30cdbadb04bb79
resource-agents-paf-4.9.0-29.el8_7.3.aarch64.rpm
f0696b8b6dc8c7a990c8a61259210888a58a9b5c2c318905b3d30f1677545911
RLBA-2023:0127
pcs bug fix and enhancement update
The pcs packages provide a command-line configuration system for the Pacemaker and Corosync utilities.
Bug Fix(es) and Enhancement(s):
* 'pcs resource config' fails to print boolean attributes set to false. (BZ#2151577)
Copyright 2024 Rocky Enterprise Software Foundation
Rocky Linux 8
1
None
An update is available for pcs.
This update affects Rocky Linux 8.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list
The pcs packages provide a command-line configuration system for the Pacemaker and Corosync utilities.
Bug Fix(es) and Enhancement(s):
* 'pcs resource config' fails to print boolean attributes set to false. (BZ#2151577)
rocky-linux-8-aarch64-resilientstorage-rpms
pcs-0.10.14-5.el8_7.1.aarch64.rpm
bc6b182e9abd120ff7a5980cc46ae0ffb958a4496481e948ec4cb922621c0526
pcs-snmp-0.10.14-5.el8_7.1.aarch64.rpm
dc62e88fdfb2483fdac888686ce9e62eed1928cb0a5d94caba37b9308c60fff1
RLBA-2022:7573
pacemaker bug fix and enhancement update
For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section.
Copyright 2024 Rocky Enterprise Software Foundation
Rocky Linux 8
1
None
An update is available for pacemaker.
This update affects Rocky Linux 8.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list
For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section.
rocky-linux-8-aarch64-resilientstorage-rpms
pacemaker-2.1.4-5.el8_7.2.aarch64.rpm
cb70ce2d725aa05fc6bc2db0cffb8373e19239ba0e2a5225e2c06707735eeda4
pacemaker-cli-2.1.4-5.el8_7.2.aarch64.rpm
902f8ec69e7873349f31da75c0cebee341dd80b828eb8ee423ff42627948a336
pacemaker-cts-2.1.4-5.el8_7.2.noarch.rpm
552913a64c186f8ca6060360ee7d3293e3f2a7fcddb86ab9d40ff2e78a08bb29
pacemaker-doc-2.1.4-5.el8_7.2.noarch.rpm
46e32d956ea3ef90debb6206bdf000d909363855e7b9138eb47f4861ab2a595f
pacemaker-libs-devel-2.1.4-5.el8_7.2.aarch64.rpm
0097710612e29f4872295746ecdcf82718750ef0064cd58d741fee666de7818a
pacemaker-nagios-plugins-metadata-2.1.4-5.el8_7.2.noarch.rpm
7d0ea13b54906097007ec155a9b9bc883aa3cf80e50081e599033f7df5c1939b
pacemaker-remote-2.1.4-5.el8_7.2.aarch64.rpm
34815a3c710e6edb6decdddd783997b83159b71f697e13dfae8e2be9e35b5138
RLBA-2022:7443
resource-agents bug fix and enhancement update
For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section.
Copyright 2024 Rocky Enterprise Software Foundation
Rocky Linux 8
1
None
An update is available for resource-agents.
This update affects Rocky Linux 8.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list
For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section.
rocky-linux-8-aarch64-resilientstorage-rpms
resource-agents-4.9.0-29.el8_7.2.aarch64.rpm
15c3e6a54a7bd3ddf346fbc7f1bcd67a3f2180819ec3753e7259311e1ccd52d6
resource-agents-paf-4.9.0-29.el8_7.2.aarch64.rpm
3775ff9b39d6c982a15a77ac7168f2427f6c49db60613bb5e41c9db69f1d8fd5
RLBA-2023:0843
fence-agents bug fix and enhancement update
The fence-agents packages provide a collection of scripts for handling remote power management for cluster devices. They allow failed or unreachable nodes to be forcibly restarted and removed from the cluster.
Bug Fix(es) and Enhancement(s):
* OCF Timeout occurring on fence_ibm_powervs (BZ#2136203)
Copyright 2024 Rocky Enterprise Software Foundation
Rocky Linux 8
1
None
An update is available for fence-agents.
This update affects Rocky Linux 8.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list
The fence-agents packages provide a collection of scripts for handling remote power management for cluster devices. They allow failed or unreachable nodes to be forcibly restarted and removed from the cluster.
Bug Fix(es) and Enhancement(s):
* OCF Timeout occurring on fence_ibm_powervs (BZ#2136203)
rocky-linux-8-aarch64-resilientstorage-rpms
fence-agents-azure-arm-4.2.1-103.el8_7.1.noarch.rpm
9d5d9d7d65b0144648762e0c8521aeeabaaa2534045423e66063adc412024f5c
fence-agents-gce-4.2.1-103.el8_7.1.noarch.rpm
02a6e26de29c92f7e011cc743fb3d0831f6b3e2b3da4731ccf2521b3e85902a2
RLSA-2023:0855
Moderate: pcs security update
The pcs packages provide a command-line configuration system for the Pacemaker and Corosync utilities.
Security Fix(es):
* sinatra: Reflected File Download attack (CVE-2022-45442)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Copyright 2024 Rocky Enterprise Software Foundation
Rocky Linux 8
1
Moderate
An update is available for pcs.
This update affects Rocky Linux 8.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list
The pcs packages provide a command-line configuration system for the Pacemaker and Corosync utilities.
Security Fix(es):
* sinatra: Reflected File Download attack (CVE-2022-45442)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
rocky-linux-8-aarch64-resilientstorage-rpms
pcs-0.10.14-5.el8_7.2.aarch64.rpm
419b500cfc8a491187840abe68ec9b95fd21952738ea6df0dc4cdfcf422523d6
pcs-snmp-0.10.14-5.el8_7.2.aarch64.rpm
05aac33ae9973ec564f16178692e0a56b4137f06d3acb7a49b2a53bc514ff74c
RLBA-2023:1585
corosync-qdevice bug fix and enhancement update
The corosync-qdevice package contains the Corosync Cluster Engine Qdevice, a script for creating NSS certificates and an init script.
Bug Fix(es) and Enhancement(s):
* corosync-qdevice service dies sometime after the network with the quorum device is lost (BZ#2180246)
Copyright 2024 Rocky Enterprise Software Foundation
Rocky Linux 8
1
None
An update is available for corosync-qdevice.
This update affects Rocky Linux 8.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list
The corosync-qdevice package contains the Corosync Cluster Engine Qdevice, a script for creating NSS certificates and an init script.
Bug Fix(es) and Enhancement(s):
* corosync-qdevice service dies sometime after the network with the quorum device is lost (BZ#2180246)
rocky-linux-8-aarch64-resilientstorage-rpms
corosync-qdevice-3.0.1-1.el8_7.1.aarch64.rpm
fa7c2264d3672d0492d9d487156c7ddc2a93e969f179debe110b5bce22fe5d35
corosync-qnetd-3.0.1-1.el8_7.1.aarch64.rpm
7b68be56886dc6589ac145b622d29cd95e039c7cb2cf86b9c38282d5cf0aaa30
RLSA-2023:3082
Moderate: pcs security and bug fix update
The pcs packages provide a command-line configuration system for the Pacemaker and Corosync utilities.
Security Fix(es):
* rubygem-rack: Denial of service in Multipart MIME parsing (CVE-2023-27530)
* rubygem-rack: denial of service in header parsing (CVE-2023-27539)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Bug Fix(es):
* Command 'pcs config checkpoint diff' does not show configuration differences between checkpoints (BZ#2180700)
* Need a way to add a scsi fencing device to a cluster without requiring a restart of all cluster resources (BZ#2180706)
Copyright 2024 Rocky Enterprise Software Foundation
Rocky Linux 8
1
Moderate
An update is available for pcs.
This update affects Rocky Linux 8.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list
The pcs packages provide a command-line configuration system for the Pacemaker and Corosync utilities.
Security Fix(es):
* rubygem-rack: Denial of service in Multipart MIME parsing (CVE-2023-27530)
* rubygem-rack: denial of service in header parsing (CVE-2023-27539)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Bug Fix(es):
* Command 'pcs config checkpoint diff' does not show configuration differences between checkpoints (BZ#2180700)
* Need a way to add a scsi fencing device to a cluster without requiring a restart of all cluster resources (BZ#2180706)
rocky-linux-8-aarch64-resilientstorage-rpms
pcs-0.10.15-4.el8_8.1.aarch64.rpm
4c487c457474975f741d43ebdbde4a7e57ade4929067aba1b5fc8d33d9e6b54e
pcs-snmp-0.10.15-4.el8_8.1.aarch64.rpm
20e5ac61ceb24d3239eab1c4b6bb3b22806adbef3def14413fb6d7bff386051a
RLBA-2023:3826
pacemaker bug fix update
The Pacemaker cluster resource manager is a collection of technologies working together to maintain data integrity and application availability in the event of failures.
Bug Fix(es):
* [BDI] Pacemaker resources left UNCLEAN after controller node failure
(BZ#2187419)
Copyright 2024 Rocky Enterprise Software Foundation
Rocky Linux 8
1
None
An update is available for pacemaker.
This update affects Rocky Linux 8.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list
The Pacemaker cluster resource manager is a collection of technologies working together to maintain data integrity and application availability in the event of failures.
Bug Fix(es):
* [BDI] Pacemaker resources left UNCLEAN after controller node failure
(BZ#2187419)
rocky-linux-8-aarch64-resilientstorage-rpms
pacemaker-2.1.5-8.1.el8_8.aarch64.rpm
3d2ca08e6660de91920c749fb980d3a5c2067c8811b542a220826fca4ec8c99d
pacemaker-cli-2.1.5-8.1.el8_8.aarch64.rpm
d6d45f287526dfaec17f8eca87a233576e9092d8de8c3ea993f958ad4f454dfa
pacemaker-cts-2.1.5-8.1.el8_8.noarch.rpm
4c73d4a72481aba9d388ca2c643ed6783f504aca058f1636c00f4873f5728c21
pacemaker-doc-2.1.5-8.1.el8_8.noarch.rpm
6c63cecb26dd7c6cb7de2027721c7a21ca53271f275766e1053b2f94e6f26e96
pacemaker-libs-devel-2.1.5-8.1.el8_8.aarch64.rpm
d7c5ebb40cb9b8a2a44f06f64f22904e956e9755fbc113138ea309faff391ce4
pacemaker-nagios-plugins-metadata-2.1.5-8.1.el8_8.noarch.rpm
a56e05d078c672510018e27bc66f4ee8002a79fe1cfae94b35399c49f2ba850b
pacemaker-remote-2.1.5-8.1.el8_8.aarch64.rpm
33fb06d45d2a0db00d5297b55da8b302029c6379b98e24bd38e4286c2377d0b9
RLBA-2023:4540
resource-agents bug fix update
The resource-agents packages provide the Pacemaker and RGManager service managers with a set of scripts. These scripts interface with several services to allow operating in a high-availability (HA) environment.
Bug Fix(es):
* azure-events-az fails with pacemaker => 2.1 with missing transition summary (BZ#2182761)
Copyright 2024 Rocky Enterprise Software Foundation
Rocky Linux 8
1
None
An update is available for resource-agents.
This update affects Rocky Linux 8.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list
The resource-agents packages provide the Pacemaker and RGManager service managers with a set of scripts. These scripts interface with several services to allow operating in a high-availability (HA) environment.
Bug Fix(es):
* azure-events-az fails with pacemaker => 2.1 with missing transition summary (BZ#2182761)
rocky-linux-8-aarch64-resilientstorage-rpms
resource-agents-4.9.0-40.el8_8.1.aarch64.rpm
12d5d97f286e85998b032f3fe6f04ea6f2e67c15e005c6587e2e60bb320d0f06
resource-agents-paf-4.9.0-40.el8_8.1.aarch64.rpm
41bd2f90a703286f25174fbc37ed974b6b4fae532bf4ce60950ef8cb1e6a5038
RLBA-2023:6903
pcs bug fix and enhancement update
For detailed information on changes in this release, see the Rocky Linux 8.9 Release Notes linked from the References section.
Copyright 2024 Rocky Enterprise Software Foundation
Rocky Linux 8
1
None
An update is available for pcs.
This update affects Rocky Linux 8.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list
For detailed information on changes in this release, see the Rocky Linux 8.9 Release Notes linked from the References section.
rocky-linux-8-aarch64-resilientstorage-rpms
pcs-0.10.17-2.el8.aarch64.rpm
9e2b5e9702e0098eed82d2041db87dcd04972af3edbfbbbbadb13cc79c71d0de
pcs-snmp-0.10.17-2.el8.aarch64.rpm
dd2b49dcd73a4abb66146afbb454cf013cbec464085082ef9421a3363899101b
RLSA-2024:2968
Moderate: fence-agents security and bug fix update
The fence-agents packages provide a collection of scripts for handling remote power management for cluster devices. They allow failed or unreachable nodes to be forcibly restarted and removed from the cluster.
Security Fix(es):
* urllib3: Request body not stripped after redirect from 303 status changes request method to GET (CVE-2023-45803)
* pycryptodome: side-channel leakage for OAEP decryption in PyCryptodome and pycryptodomex (CVE-2023-52323)
* jinja2: HTML attribute injection when passing user input as keys to xmlattr filter (CVE-2024-22195)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Additional Changes:
For detailed information on changes in this release, see the Rocky Linux 8.10 Release Notes linked from the References section.
Copyright 2024 Rocky Enterprise Software Foundation
Rocky Linux 8
1
Moderate
An update is available for fence-agents.
This update affects Rocky Linux 8.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list
The fence-agents packages provide a collection of scripts for handling remote power management for cluster devices. They allow failed or unreachable nodes to be forcibly restarted and removed from the cluster.
Security Fix(es):
* urllib3: Request body not stripped after redirect from 303 status changes request method to GET (CVE-2023-45803)
* pycryptodome: side-channel leakage for OAEP decryption in PyCryptodome and pycryptodomex (CVE-2023-52323)
* jinja2: HTML attribute injection when passing user input as keys to xmlattr filter (CVE-2024-22195)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Additional Changes:
For detailed information on changes in this release, see the Rocky Linux 8.10 Release Notes linked from the References section.
rocky-linux-8-aarch64-resilientstorage-rpms
fence-agents-azure-arm-4.2.1-129.el8.noarch.rpm
c85c7cc70261921afeccfb6045788836430a4d7176d23897b534f9af4866922b
fence-agents-gce-4.2.1-129.el8.noarch.rpm
39b5f95506d974461ac7f473174121b5545f919881ee1aedc714e3538c3f008b
RLBA-2024:3055
pacemaker bug fix and enhancement update
For detailed information on changes in this release, see the Rocky Linux 8.10 Release Notes linked from the References section.
Copyright 2024 Rocky Enterprise Software Foundation
Rocky Linux 8
1
None
An update is available for pacemaker.
This update affects Rocky Linux 8.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list
For detailed information on changes in this release, see the Rocky Linux 8.10 Release Notes linked from the References section.
rocky-linux-8-aarch64-resilientstorage-rpms
pacemaker-2.1.7-5.el8_10.aarch64.rpm
5a96275ff59f7a55ca965c464a294cc7ff5e220abaaf67f2a16b69770e829c55
pacemaker-cli-2.1.7-5.el8_10.aarch64.rpm
8ca6d6d0a7d0348f3ce54da82d39898950231607f5399f7ef22b36d42769ccf2
pacemaker-cts-2.1.7-5.el8_10.noarch.rpm
9bf92a67432162114dfaf4a7e8dfbfd93e421138bfc9120d640c3dc1cae46042
pacemaker-doc-2.1.7-5.el8_10.noarch.rpm
de9be410c27788f5964107ab147fd85dcc9ac1417e3a5dc85a60a5537c77d4b9
pacemaker-libs-devel-2.1.7-5.el8_10.aarch64.rpm
87811e66cb7ff317eaef2e660856896f9fa275f0a92aaf02181d28b39246f1a2
pacemaker-nagios-plugins-metadata-2.1.7-5.el8_10.noarch.rpm
751f7b22a2b22c2b7a17d9cdd21607e0484f505353472509030b813871a25c3e
pacemaker-remote-2.1.7-5.el8_10.aarch64.rpm
fbe62569d80a7d2db3d7fd7687723efa87d3fedc5a76833ab63a89e3c5d0fed0
python3-pacemaker-2.1.7-5.el8_10.noarch.rpm
bef406481e995bb8fd093e119138c9ce7710992e4434ec35f620e418494afc54
RLSA-2024:2953
Moderate: pcs security update
The pcs packages provide a command-line configuration system for the Pacemaker and Corosync utilities.
Security Fix(es):
* rubygem-rack: Denial of Service Vulnerability in Rack Content-Type Parsing (CVE-2024-25126)
* rubygem-rack: Possible DoS Vulnerability with Range Header in Rack (CVE-2024-26141)
* rubygem-rack: Possible Denial of Service Vulnerability in Rack Header Parsing (CVE-2024-26146)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Additional Changes:
For detailed information on changes in this release, see the Rocky Linux 8.10 Release Notes linked from the References section.
Copyright 2024 Rocky Enterprise Software Foundation
Rocky Linux 8
1
Moderate
An update is available for pcs.
This update affects Rocky Linux 8.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list
The pcs packages provide a command-line configuration system for the Pacemaker and Corosync utilities.
Security Fix(es):
* rubygem-rack: Denial of Service Vulnerability in Rack Content-Type Parsing (CVE-2024-25126)
* rubygem-rack: Possible DoS Vulnerability with Range Header in Rack (CVE-2024-26141)
* rubygem-rack: Possible Denial of Service Vulnerability in Rack Header Parsing (CVE-2024-26146)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Additional Changes:
For detailed information on changes in this release, see the Rocky Linux 8.10 Release Notes linked from the References section.
rocky-linux-8-aarch64-resilientstorage-rpms
pcs-0.10.18-2.el8_10.aarch64.rpm
378ce87622efa16867676cc266722e736d746dd3082c8791ae533a11cc196ece
pcs-snmp-0.10.18-2.el8_10.aarch64.rpm
9a37ac0debb651a60a0aa5320ee83fe09a1aa4fe83d8c711aa08396b8488f0ad
RLBA-2024:3239
kronosnet bug fix and enhancement update
For detailed information on changes in this release, see the Rocky Linux 8.10 Release Notes linked from the References section.
Copyright 2024 Rocky Enterprise Software Foundation
Rocky Linux 8
1
None
An update is available for kronosnet.
This update affects Rocky Linux 8.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list
For detailed information on changes in this release, see the Rocky Linux 8.10 Release Notes linked from the References section.
rocky-linux-8-aarch64-resilientstorage-rpms
libknet1-1.28-1.el8.aarch64.rpm
11a4e3bcd97c446b6496e01dc2e1c393d8230da8a28da07777cacf5ed99d8ed4
libknet1-compress-bzip2-plugin-1.28-1.el8.aarch64.rpm
b7d7468f066777ae3e8b8ddca3cde3d9ace564c94f40a189f19e69397e5f1761
libknet1-compress-lz4-plugin-1.28-1.el8.aarch64.rpm
b29903a8f104a01f83d0a648bad2daa8a26a9629a8b4d5bb180d0a057566a612
libknet1-compress-lzma-plugin-1.28-1.el8.aarch64.rpm
e6d60186a069f9b93c20bd43a4519b64cc55342505c8147c1a76093ee247fe9f
libknet1-compress-lzo2-plugin-1.28-1.el8.aarch64.rpm
a77f169af00c7369d5629cefbee84aa9c4ea213e5ab1b0af49361ed13ef85112
libknet1-compress-plugins-all-1.28-1.el8.aarch64.rpm
bb02d26ddf9d356995c8d2ec1b366ff11f7b713a1adfa4117ee4a9e1be0d5ca3
libknet1-compress-zlib-plugin-1.28-1.el8.aarch64.rpm
b458b240f9aea08691fa6a0dc4d58a2eb5caac2121560d8fb5025e19e428a329
libknet1-crypto-nss-plugin-1.28-1.el8.aarch64.rpm
84fc96f9622312734418110a70a73142fabb970dcec61ccd1a45dbba761ea729
libknet1-crypto-openssl-plugin-1.28-1.el8.aarch64.rpm
a84e96548f772a175789ece838f0d7ccf15e95af4af8bf05f1768270bc253feb
libknet1-crypto-plugins-all-1.28-1.el8.aarch64.rpm
ccd050edc4d087d73c963d672e75b2c384fd3b04300e100d45712bd8b4b7eff0
libknet1-plugins-all-1.28-1.el8.aarch64.rpm
ce1b95eaae6e54dae7f62f41ad1f1398d3893d3ca76c2f7ca2a8366975bbd7c0
libnozzle1-1.28-1.el8.aarch64.rpm
2e0acaf3b47ea21d4af86293b2ee6cf8bd4397659dd2c5711070e1febcdb73eb
RLSA-2024:3659
Important: booth security update
The Booth cluster ticket manager is a component to bridge high availability
clusters spanning multiple sites, in particular, to provide decision inputs to
local Pacemaker cluster resource managers. It operates as a distributed
consensus-based service, presumably on a separate physical network. Tickets
facilitated by a Booth formation are the units of authorization that can be
bound to certain resources. This will ensure that the resources are run at only
one (granted) site at a time.
Security Fix(es):
* booth: specially crafted hash can lead to invalid HMAC being accepted by Booth server (CVE-2024-3049)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Copyright 2024 Rocky Enterprise Software Foundation
Rocky Linux 8
1
Important
An update is available for booth.
This update affects Rocky Linux 8.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list
The Booth cluster ticket manager is a component to bridge high availability
clusters spanning multiple sites, in particular, to provide decision inputs to
local Pacemaker cluster resource managers. It operates as a distributed
consensus-based service, presumably on a separate physical network. Tickets
facilitated by a Booth formation are the units of authorization that can be
bound to certain resources. This will ensure that the resources are run at only
one (granted) site at a time.
Security Fix(es):
* booth: specially crafted hash can lead to invalid HMAC being accepted by Booth server (CVE-2024-3049)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
rocky-linux-8-aarch64-resilientstorage-rpms
booth-1.1-1.el8_10.1.aarch64.rpm
28ea1411493f79b6daf5af0a329bc9541700a72a2c5d041b760409fd7356bb49
booth-arbitrator-1.1-1.el8_10.1.noarch.rpm
682b82af4350f9645ab5dbe3851f372ea0b36923f5eee26330097e5a69cf9de6
booth-core-1.1-1.el8_10.1.aarch64.rpm
99bf00c87e0b55cfbb6c8484a6edd50c73743a435d782639d1d4a7248b350465
booth-site-1.1-1.el8_10.1.noarch.rpm
bb50d5f23970b63e457e065b12b0137b1692816ce2d5744d6e3eeb645a43ed28
booth-test-1.1-1.el8_10.1.noarch.rpm
afe6b462d734c9175a6012f50350cabc524e9ac710bf10d14dcdc159d75391f1
RLBA-2024:4225
resource-agents bug fix update
The resource-agents packages provide the Pacemaker and RGManager service managers with a set of scripts. These scripts interface with several services to allow operating in a high-availability (HA) environment.
Bug Fix(es):
* db2: fix OCF_SUCESS name in db2_notify (Rocky Linux-32828)
* [RFE] aws-vpc-move-ip: add retry mechanism to get EC2_INSTANCE_ID [rhel-8.10.z] (Rocky Linux-34137)
Copyright 2024 Rocky Enterprise Software Foundation
Rocky Linux 8
1
None
An update is available for resource-agents.
This update affects Rocky Linux 8.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list
The resource-agents packages provide the Pacemaker and RGManager service managers with a set of scripts. These scripts interface with several services to allow operating in a high-availability (HA) environment.
Bug Fix(es):
* db2: fix OCF_SUCESS name in db2_notify (Rocky Linux-32828)
* [RFE] aws-vpc-move-ip: add retry mechanism to get EC2_INSTANCE_ID [rhel-8.10.z] (Rocky Linux-34137)
rocky-linux-8-aarch64-resilientstorage-rpms
resource-agents-4.9.0-54.el8_10.1.aarch64.rpm
f88b3935c7a778412d48532a935ecdb45b3436f0268e9320bcc1791a586affef
resource-agents-paf-4.9.0-54.el8_10.1.aarch64.rpm
207030de06163fd95fd9eb383c85a45799571611b403bcac4562f90ca258d34c
RLBA-2024:5260
pacemaker bug fix update
The Pacemaker cluster resource manager is a collection of technologies working together to maintain data integrity and application availability in the event of failures.
Bug Fix(es):
* Memory leak in pacemaker-attrd [rhel-8.10.z] (JIRA:Rocky Linux-40145)
Copyright 2024 Rocky Enterprise Software Foundation
Rocky Linux 8
1
None
An update is available for pacemaker.
This update affects Rocky Linux 8.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list
The Pacemaker cluster resource manager is a collection of technologies working together to maintain data integrity and application availability in the event of failures.
Bug Fix(es):
* Memory leak in pacemaker-attrd [rhel-8.10.z] (JIRA:Rocky Linux-40145)
rocky-linux-8-aarch64-resilientstorage-rpms
pacemaker-2.1.7-5.1.el8_10.aarch64.rpm
a88c0a83aaca891c5c02f3e04e7d3872366e8cabc6e0c0b395b1d5ad11fc87cf
pacemaker-cli-2.1.7-5.1.el8_10.aarch64.rpm
93796d4db1ec149272ced444de43543978f75b26286eb163a54e2fce9b08a928
pacemaker-cts-2.1.7-5.1.el8_10.noarch.rpm
3e521cf7cff95308f7ccfbc8bae14f4238decf866e40a471948a5300a7435e51
pacemaker-doc-2.1.7-5.1.el8_10.noarch.rpm
db747655452f25e72ef359c59d154ea598ef6261ad5619459e789cc38e9ca6f6
pacemaker-libs-devel-2.1.7-5.1.el8_10.aarch64.rpm
c3118903828a10f9499cce6eee2eb9c820ec177888e96d3f0c154f29016cecf3
pacemaker-nagios-plugins-metadata-2.1.7-5.1.el8_10.noarch.rpm
c39c590d75290bd0b720b3a6fa4b19faab407ff7dae3b4361a619b3eed3af60d
pacemaker-remote-2.1.7-5.1.el8_10.aarch64.rpm
49d94cade1fa56f98301a893c6a8107bfecf5a3acc5b94aa40347b5efd7002e7
python3-pacemaker-2.1.7-5.1.el8_10.noarch.rpm
32142138b0530202439fb0554524c8195e81b3bf54868fee471cf9f3b2e77e85
RLSA-2024:6670
Moderate: pcs security update
The pcs packages provide a command-line configuration system for the Pacemaker and Corosync utilities.
Security Fix(es):
* rexml: rubygem-rexml: DoS when parsing an XML having many specific characters such as whitespace character, >] and ]> (CVE-2024-41123)
* rexml: DoS vulnerability in REXML (CVE-2024-41946)
* rexml: DoS vulnerability in REXML (CVE-2024-43398)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Copyright 2024 Rocky Enterprise Software Foundation
Rocky Linux 8
1
Moderate
An update is available for pcs.
This update affects Rocky Linux 8.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list
The pcs packages provide a command-line configuration system for the Pacemaker and Corosync utilities.
Security Fix(es):
* rexml: rubygem-rexml: DoS when parsing an XML having many specific characters such as whitespace character, >] and ]> (CVE-2024-41123)
* rexml: DoS vulnerability in REXML (CVE-2024-41946)
* rexml: DoS vulnerability in REXML (CVE-2024-43398)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
rocky-linux-8-aarch64-resilientstorage-rpms
pcs-0.10.18-2.el8_10.2.aarch64.rpm
f8dc9ea4e81677c1e3df4c0eac12c7e8287ff1d2f279b637416536c3888fa25e
pcs-snmp-0.10.18-2.el8_10.2.aarch64.rpm
9dbe97f8940646a8c20e37b98b6f83108b74792ad43436991302fa4387f207bc
RLBA-2024:6965
pacemaker bug fix update
The Pacemaker cluster resource manager is a collection of technologies working together to maintain data integrity and application availability in the event of failures.
Bug Fix(es):
* crm_node mishandles node IDs [rhel-8.10.z] (JIRA:Rocky Linux-49928)
Copyright 2024 Rocky Enterprise Software Foundation
Rocky Linux 8
1
None
An update is available for pacemaker.
This update affects Rocky Linux 8.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list
The Pacemaker cluster resource manager is a collection of technologies working together to maintain data integrity and application availability in the event of failures.
Bug Fix(es):
* crm_node mishandles node IDs [rhel-8.10.z] (JIRA:Rocky Linux-49928)
rocky-linux-8-aarch64-resilientstorage-rpms
pacemaker-2.1.7-5.2.el8_10.aarch64.rpm
496200a4b1dbc42269a9617495b0266ac19a8086c85335006ec09c1082705b65
pacemaker-cli-2.1.7-5.2.el8_10.aarch64.rpm
890bdf3040eb9c762be608eb134ccfc78190c3f170c9e0aec864f59bf868685d
pacemaker-cts-2.1.7-5.2.el8_10.noarch.rpm
cc833e15a3b868380804b7a869fc96f4ac03bc8545b7bf1d5cc1c7924d02b89b
pacemaker-doc-2.1.7-5.2.el8_10.noarch.rpm
daf5d11213b53d9e4797e1fc941a4f860c017c7a2f7b79d260a9d0696f99e33e
pacemaker-libs-devel-2.1.7-5.2.el8_10.aarch64.rpm
6b5ec34272a855eadb335d63ba03691ebdfe1c1f264c50fb6eb7d8d73f8762af
pacemaker-nagios-plugins-metadata-2.1.7-5.2.el8_10.noarch.rpm
3ece13cd96070cdf17d1762cab1dd8cd31f59fb306a0cda09c9c514addd6d7d6
pacemaker-remote-2.1.7-5.2.el8_10.aarch64.rpm
d7fb9541f07f262c05e5e7a1437969793dd7dd1a3037e8d8197386eb77470906
python3-pacemaker-2.1.7-5.2.el8_10.noarch.rpm
d9f606fb57d4af297725b31bd2cd80ae432f3bf419fe8099d3839d2037b99024
RLBA-2024:8872
resource-agents bug fix and enhancement update
The resource-agents packages provide the Pacemaker and RGManager service managers with a set of scripts. These scripts interface with several services to allow operating in a high-availability (HA) environment.
Bug Fix(es) and Enhancement(s):
* nfsserver fails to stop when `nfsv4_only=true` [rhel-8.10.z] (JIRA:Rocky Linux-61138)
Copyright 2024 Rocky Enterprise Software Foundation
Rocky Linux 8
1
None
An update is available for resource-agents.
This update affects Rocky Linux 8.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list
The resource-agents packages provide the Pacemaker and RGManager service managers with a set of scripts. These scripts interface with several services to allow operating in a high-availability (HA) environment.
Bug Fix(es) and Enhancement(s):
* nfsserver fails to stop when `nfsv4_only=true` [rhel-8.10.z] (JIRA:Rocky Linux-61138)
rocky-linux-8-aarch64-resilientstorage-rpms
resource-agents-4.9.0-54.el8_10.5.aarch64.rpm
dd516510e1b8416f016fa3147aa0db838e04816496d5ff890906a4444a9eb43b
resource-agents-paf-4.9.0-54.el8_10.5.aarch64.rpm
d5dd2024746d348c6a382f598b029de1cc7ad21691f4774c6fd0985e7f7d19ba
RLSA-2024:10987
Moderate: pcs security update
The pcs packages provide a command-line configuration system for the Pacemaker and Corosync utilities.
Security Fix(es):
* sinatra: Open Redirect Vulnerability in Sinatra via X-Forwarded-Host Header (CVE-2024-21510)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Copyright 2024 Rocky Enterprise Software Foundation
Rocky Linux 8
1
Moderate
An update is available for pcs.
This update affects Rocky Linux 8.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list
The pcs packages provide a command-line configuration system for the Pacemaker and Corosync utilities.
Security Fix(es):
* sinatra: Open Redirect Vulnerability in Sinatra via X-Forwarded-Host Header (CVE-2024-21510)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
rocky-linux-8-aarch64-resilientstorage-rpms
pcs-0.10.18-2.el8_10.3.aarch64.rpm
2b26a695631aba7bb4befbdbd951bb08b47ef4123ee82d419524e9b0551a146c
pcs-snmp-0.10.18-2.el8_10.3.aarch64.rpm
f1855c9307777ce620dc41b496e21265df03e6a5217345ceee0bf2d34370512f
RLBA-2024:11204
resource-agents bug fix and enhancement update
The resource-agents packages provide the Pacemaker and RGManager service managers with a set of scripts. These scripts interface with several services to allow operating in a high-availability (HA) environment.
Bug Fix(es) and Enhancement(s):
* Filesystem: fix to avoid killing unrelated processes [rhel-8.10.z] (JIRA:Rocky Linux-69297)
Copyright 2024 Rocky Enterprise Software Foundation
Rocky Linux 8
1
None
An update is available for resource-agents.
This update affects Rocky Linux 8.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list
The resource-agents packages provide the Pacemaker and RGManager service managers with a set of scripts. These scripts interface with several services to allow operating in a high-availability (HA) environment.
Bug Fix(es) and Enhancement(s):
* Filesystem: fix to avoid killing unrelated processes [rhel-8.10.z] (JIRA:Rocky Linux-69297)
rocky-linux-8-aarch64-resilientstorage-rpms
resource-agents-4.9.0-54.el8_10.6.aarch64.rpm
5250374653009788a299a3eb6981c2fc85b8d88acbadfc5b79aaab3dc3e590ed
resource-agents-paf-4.9.0-54.el8_10.6.aarch64.rpm
5d4fc8db7f296168735221c2eb7857a52c64b9abfceca348facf00e774ecd180